On Sat, 9 Jul 2005 [log in to unmask] wrote:
> On Sat, 9 Jul 2005, Filippidis christos wrote:
>
> > hi,
> > at the tests i take this output:
> > Checking 3rd party replication from lxn1183.cern.ch to the default SE:
> > Running command : lcg-rep -v --vo dteam -d xg006.inp.demokritos.gr
> > sfn://lxn1183.cern.ch/storage/dteam/generated/2005-06-16/filec6a30c8a-0ebc-420d-9cd1-5a3a7b88c56f
> > the server sent an error response: 425 425 Can't open data connection.
> > timed out() failed.
>
> Instead of lcg-cr and friends, use "globus-url-copy -dbg" from a WN to see
> what is really happening:
>
> globus-url-copy -dbg gsiftp://lxn1183.cern.ch/etc/group \
> gsiftp://xg006.inp.demokritos.gr/tmp/test.468
You do not even need to go on a WN. Here is an example from lxplus.cern.ch:
-----------------------------------------------------------------------------
$ globus-url-copy -dbg gsiftp://lxn1183.cern.ch/etc/group gsiftp://xg006.inp.demokritos.gr/tmp/test.741
debug: starting to transfer gsiftp://lxn1183.cern.ch/etc/group to gsiftp://xg006.inp.demokritos.gr/tmp/test.741
debug: connecting to gsiftp://xg006.inp.demokritos.gr/tmp/test.741
debug: response from gsiftp://xg006.inp.demokritos.gr/tmp/test.741:
220 xg006.inp.demokritos.gr GridFTP Server 1.12 GSSAPI type Globus/GSI wu-2.6.2 (gcc32dbg, 1062606889-42) ready.
debug: authenticating with gsiftp://xg006.inp.demokritos.gr/tmp/test.741
debug: response from gsiftp://xg006.inp.demokritos.gr/tmp/test.741:
230 User dteamsgm logged in.
debug: sending command:
FEAT
debug: response from gsiftp://xg006.inp.demokritos.gr/tmp/test.741:
211-Extensions supported:
REST STREAM
ESTO
ERET
MDTM
SIZE
PARALLEL
DCAU
211 END
debug: sending command:
TYPE I
debug: response from gsiftp://xg006.inp.demokritos.gr/tmp/test.741:
200 Type set to I.
debug: sending command:
PBSZ 16384
debug: response from gsiftp://xg006.inp.demokritos.gr/tmp/test.741:
200 PBSZ=16384
debug: sending command:
PASV
debug: response from gsiftp://xg006.inp.demokritos.gr/tmp/test.741:
227 Entering Passive Mode (192,168,1,60,78,32)
[...]
-----------------------------------------------------------------------------
There you are: it responded with its private address 192.168.1.60.
The gridftp server will respond with its address that is on the same
network that was used for the incoming connection, so in your case
the server perceives the connection as coming from the local network.
You can either try and fix it with NAT/iptables/... or upgrade the
edg-gridftpd and start it with a configuration indicating which public
address it shall always use for data transfers; I can supply details.
|