For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

smp_86112's avatar
smp_86112
Icon for Cirrostratus rankCirrostratus
Sep 17, 2013

Backup of critical GTM config files

I was hoping someone could help me understand how my v10.x GTM configuration files are getting backed up. When I examine a UCS archive, it appears my config files are all saved in /var/tmp/gtm_tmp. But there is nothing saved from /config/gtm or /config/big3d, which is scary. This appears to be the relevant section of the cs.dat:

 save 3dns via a temp directory to allow Combo/HA pairs (ie. one 3dns)
 /config/gtm/ & /config/big3d
save.2400.ignore        = (/config/gtm/.*)
save.2410.ignore        = (/config/big3d/.*)
save.2420.save_pre      = 3dns_save_pre
save.2420.dir           = /var/tmp/gtm_tmp
save.2420.save_post     = (rm -rf /var/tmp/gtm_tmp)

I don't quite understand what this is telling me, other than it is skipping those two directories in the backup. There is no other reference to "3dns_save_pre" or "/var/tmp/gtm_tmp" anywhere else in the cs.dat file, so I can't figure out what is happening. I should uncomment those two ignore directives, right? What is controlling the copying of the config files to /var/tmp/gtm_tmp, which is in the UCS?

2 Replies

  • I wouldn't. Whatever the reasoning behind this I'd expect the restore process to take account of it and reverse it. Only way to be sure is to test I guess but I'd be pretty confident it would work correctly.

     

  • That is expected behavior, smp. Indirect details: Solution 7821

     

    If I had to guess, I'd say this is done this way because it has not historically been a best practice to have GTM on both devices of an HA pair, and there may be a check when the UCS is loaded for GTM, and references the tmp directory for config if so. Just a guess, though.