Native GPFS - via Maxwell
The Core filesystem is mounted on the Maxwell Analysis cluster. This is the fastest available solution for accessing the Core filesystem.
For more information, see Maxwell for Photon Science
SMB - For Windows, macOS and Linux users
For Windows, macOS and Linux users from Office networks, SMB is the recommended way to access the Core filesystem.
Linux desktop users should also access the Core filesystem via SMB, as it does not require any root permissions or configuration on the clients.
This is currently the only way to mount the Core filesystem on a DESY green desktop installation.
Each individual facility or research group has its own share:
|Facility||Path on GPFS||SMB Share Name|
See below for a manual on how to access the SMB share by mapping a network drive:
Right-click on Computer
Click on Map Network Drive
- Select drive U: and enter the SMB share name you want to access
3. Confirm that you want to connect to this SMB server
- Open the Files or Nautilus application and click on Other Location
- Enter the SMB share prefixed with smb://, backslashes have to be converted to forward slashes
- Enter your DESY Account name and password
- The share has now been mapped and data can be accessed. To unmap the share, click on the eject button
- If you need to access the share from the CLI, look into /run/user/<numeric UID>/gvfs/<share name>
NFSv4 - For Linux users
While SMB is still the recommended way to access the Core filesystem, certain use-cases require an NFS mount.
For this purpose, an NFSv4 export with and without Kerberos is available.
|Facility||Path on GPFS||NFS Export|
Restricted Mount Access
Access to the NFSv4 exports are either restricted by IP subnet or netgroups from LDAP.
For PETRA III, the following subnets are allowed to mount the Core filesystem with kerberos:
For FLASH, hosts in the LDAP netgroup a3-flash-core-krb5-hosts are allowed to mount the core filesystem.
To display the hosts, you can use ldapsearch on pal.desy.de: ldapsearch -x cn=a3-flash-core-krb5-hosts
Mounting via NFSv4 with Kerberos
Mounting the Core filesystem via Kerberos requires root privileges on the client machine.
mount with krb5
mount -o nfsvers=4.0,sec=krb5,hard <NFS Export> <local mountpoint>
mount -o nfsvers=4.0,sec=krb5,hard asap3.desy.de:/asap3/flash/gpfs /asap3/flash/gpfs
Additional configuration and a kerberos keytab is required on the client machine, the setup for this is out of scope for this documentation.
Mounting via NFSv4 without Kerberos
Mounting the Core filesystem without Kerberos requires root privileges. Due to the security implications for this type of mount, this must be explicitly requested, as the host will be included in a whitelist.
Please contact FS-EC (firstname.lastname@example.org) in order to be included in the whitelist.
mount without krb5
mount -o nfsvers=4.0,sec=sys,hard <NFS Export> <local mountpoint>
mount -o nfsvers=4.0,sec=sys,hard asap3.desy.de:/asap3/flash/gpfs /asap3/flash/gpfs
Additional configuration is required on the client machine, the setup for this is out of scope for this documentation.