PowerScale: Upgrade schlägt fehl mit Remove-lsa-nthashes.py

Summary: Das Upgrade von OneFS schlägt mit dem Fehler "Hook Failed [/usr/share/upgrade/event-actions/upgrade-post-reboot-final/remove-lsa-nthashes.py]" fehl.

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Symptoms

Upgradeprotokolle zeigen Folgendes an:

powerscale-46# isi_upgrade_logs
Warning: Insufficient data for Node LNN :[2]
8  2026-03-31T16:59:18  /usr/sbin/isi_upgrade_agent_d  Debug  Queueing up hook script: /usr/share/upgrade/event-actions/upgrade-post-reboot-final/remove-lsa-nthashes.py
8  2026-03-31T17:00:19  /usr/sbin/isi_upgrade_agent_d  Warn  Hook Failed [/usr/share/upgrade/event-actions/upgrade-post-reboot-final/remove-lsa-nthashes.py]
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  Warn : Upgrade may already be in progress... create failed : File Name : /b/mnt/src/isilon/lib/isi_upgrade/Lock.cpp : Line Number : 111
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  Traceback (most recent call last):
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform    File "/usr/share/upgrade/event-actions/upgrade-post-reboot-final/remove-lsa-nthashes.py", line 57, in <module>
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform      u.clear_old_nthash()
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  isi.auth_util.Error: The authentication provider was created in a zone that makes it unmodifiable
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  During handling of the above exception, another exception occurred:
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  Traceback (most recent call last):
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform    File "/usr/share/upgrade/event-actions/upgrade-post-reboot-final/remove-lsa-nthashes.py", line 61, in <module>
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform      upgrade_helper.log_error(
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  AttributeError: 'HookOnceFromVersionHelper' object has no attribute 'log_error'
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  Checking relevance...
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  Is this the first node to run the hook?
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  No. Script not relevant, exiting.
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  Checking relevance...
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  Is this the first node to run the hook?
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  Yes.
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  Are we upgrading from a relevant version?
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  Yes.
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  We are relevant.
8  2026-03-31T17:00:19  remove-lsa-nthashes.py  Inform  Starting deletion of NTHashes from all Local providers

 

Die Prüfung der On-Cluster-Analyse (IOCA) zeigt Folgendes an:

Access Zone Authentication Providers    FAIL
  FAIL: Critical: Zone local providers (with the exception of System Zone) would temporarily need the 'System' provider removed to enable the OneFS upgrade to complete.
  FAIL: Zone: nonsystemzone, Providers: lsa-local-provider:System
  FAIL: Zone: eyeglass, Providers: lsa-local-provider:System

Cause

Der Hook kann das Skript nicht ausführen, weil lsa-local-provider:System In Nichtsystemzonen.

Resolution

Achtung: Vorübergehendes Entfernen von lsa-local-provider:System Workflows wie Analysen können unterbrochen werden.

 

Die Technikabteilung ist sich des Problems bewusst und arbeitet an einer dauerhaften Lösung. Um den Fehler zu umgehen, lsa-local-provider:System Muss vorübergehend aus Nichtsystemzonen entfernt werden. Um dies zu überprüfen, führen Sie in der CLI Folgendes aus:

powerscale-46# isi zone zones list -v
             
                       Name: System   <<<<<<<<< Default, do not edit this one
                       Path: /ifs
                   Groupnet: groupnet0
              Map Untrusted: 
             Auth Providers: lsa-local-provider:System, lsa-file-provider:System
               NetBIOS Name: 
         User Mapping Rules: -
       Home Directory Umask: 0077
         Skeleton Directory: /usr/share/skel
         Cache Entry Expiry: 4H
Negative Cache Entry Expiry: 1m
                    Zone ID: 1

                       Name: eyeglass   <<<<<<nonsystem zone
                       Path: /ifs/data/
                   Groupnet: groupnet0
              Map Untrusted:
             Auth Providers: lsa-local-provider:System, lsa-local-provider:eyeglass   <<<<<<<<<<< lsa System needs to be removed 
               NetBIOS Name:
         User Mapping Rules: -
       Home Directory Umask: 0077
         Skeleton Directory: /usr/share/skel
         Cache Entry Expiry: 4H
Negative Cache Entry Expiry: 1m
                    Zone ID: 6

Entfernen Sie den Anbieter mit diesem Befehl:

powerscale-46# isi zone zones modify <non-system-zone> --remove-auth-providers=lsa-local-provider:System

Führen Sie den Befehl für jede Nichtsystemzone aus und wiederholen Sie dann die letzte Aktion auf den Fehler-Nodes:

powerscale-46# isi upgrade view

Upgrade Status:

Current Upgrade Activity: OneFS upgrade
   Cluster Upgrade State: error
                          (see output of `isi upgrade nodes list` to know which node failed)
   Upgrade Process State: Stopped
      Upgrade Start Time: 2026-03-31T10:29:20.362000
      Current OS Version: 9.7.1.5_build(4)style(5)
      Upgrade OS Version: 9.10.1.7_build(4)style(5)
        Percent Complete: -

Nodes Progress:

     Total Cluster Nodes: 36
       Nodes On Older OS: 30
          Nodes Upgraded: 0
Nodes Transitioning/Down: 6

Wenn ein Fehler auftritt, können Sie den Befehl ausführen isi_upgrade_logs , um weitere Informationen zu sammeln. Wenn Sie eine fehlgeschlagene Aktion auf den erforderlichen Nodes wiederholen möchten, verwenden Sie den folgenden Befehl isi upgrade cluster retry-last-action --nodes=<LNN>.  

LNN                                                        Version   Status
-----------------------------------------------------------------------------------
25,30                                                      Unknown   non-responsive
26,31,33-60                                                9.7.1.5   upgrading
27                                                         9.10.1.7  upgrading
28-29,32                                                   9.10.1.7  error

In diesem Fall lautet der Befehl:

powerscale-46# isi upgrade cluster retry-last-action --nodes=28-29,32

Wenn das Upgrade fortgesetzt wird, lsa-local-provider:System Kann wieder zu den Zonen hinzugefügt werden:

powerscale-46# isi zone zones modify <non-system-zone> --add-auth-providers=lsa-local-provider:System

Die andere Möglichkeit ist ein Rollback.

 

Achtung: Das Zurücksetzen des Upgrades ist ein Ausfall, da alle Nodes, für die ein Upgrade durchgeführt wurde, gleichzeitig neu gestartet werden.

Wenn Sie ein Rollback des Upgrades durchführen möchten, verwenden Sie den folgenden Befehl isi upgrade cluster rollback.

Wenn dieser Fehler erneut auftritt und es nicht offensichtlich ist, was dieser Fehler ist, wenden Sie sich an den technischen Support von Dell.

Article Properties
Article Number: 000447994
Article Type: Solution
Last Modified: 21 مايو 2026
Version:  5
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.