CentOS7 Annoyances

Home » CentOS » CentOS7 Annoyances
CentOS 26 Comments


I’m sure the CentOS team has done a yeoman’s job getting CentOS7
ready, and that the Redhat team has done marvels in creating rhel7, but here’s a little voice from a personal hobbyist user.

(‘ve been maintaining several remote servers since Redhat 6 days, migrating from that to Whitebox, then CentOS, and things have been running as expected including the current version of CentOS6. As an experiment, I’ve tried to play with CentOS7 on an in-house virtual machine (VMWare on Win7), and have encountered a collection of annoyances greater than I’ve even seen. Below is a note about them. If someone has some elegant solution, I’d love to try, but CentOS7 is still unusable for me.

1: Firewall changes
The change in firewall technology forced a complete re-do of my scripts which maintain firewalls, respond to attacks, etc. I think I’ve programmed my way around the issues, but it wasn’t easy.

2: Apache changes
These were subtle, but again were solved.

3: Service -> systemd
The change from object-oriented view of service: (service httpd restart) to function-oriented (systemctl restart firewall) seems to be unnecessary, and counter to the way stuff is generally done in the modern world. Nonetheless, it was possible to solve that with some adaptive script programming.

4) Something with Unknown lvalue ‘ControlGroup’ in section ‘Service’
I don’t know what to do with this. I constantly get the diagnostic:
[/usr/lib/systemd/system/rtkit-daemon.service:32] Unknown lvalue
‘ControlGroup’ in section ‘Service’
and attempts to browse the internet for solutions come across barriers that require some paid subscription to view. This is currently a progress-stopper. The messages I see deal with boinc, which does not show up on my system using “rpm -qa | grep -i boinc”.

5) Sendmail is out, postfix is in.
This is a huge change, since I had lots of scripts that tailored the Sendmail system for spam protection, dealing with SmartHosts that required SMTP-AUTH and others required weird configurations, etc. Whether this is working yet I don’t quite know, but it seems the scripts can accommodate the change.

6) Installation
I have no idea why, when using the net-install, one must explicitly turn on the network. It seems unnecessary.

7) Lack of 32-bit support
I think I understand this. After all, 32-bit machines may become
“unusable” when the clock overflows, but isn’t that a few years away, and couldn’t some solution be found, even if kludgy? Some of the
32-bit hardware was of very high quality, and still runs perfectly. I’d hate to spend a few hundred dollars each to replace all those systems.

8) And more

I haven’t got a server or desktop running to my satisfaction yet, so I don’t yet know what pitfalls await. Any advice would be appreciated.

David in San Francisco

26 thoughts on - CentOS7 Annoyances

  • I used Shorewall on 5.x and 6.x so on 7.x I just disabled firewalld and installed shorewall. Btw. I haven’t even tried to learn firewalld, to confusing and too lite time to waste.

    For me “service httpd restart” works just fine, automatic conversion works like a charm. I do get informed what command was run, but it DOES
    it’s job.

    I have been using Postfix from 5.x. The fact that you chose to use obsolete (from Red Hat’s point of view) software should be on no one but you.

    I would add idiotic Gnome 3 that does not have right click menu for creating launchers (copying .desktop files from /usr/share/applications?
    works like a charm but you need to create them manually for every launcher) and inability to place launchers and icons on top panel as infuriating.

    Gnome extensions from Tweak Tool are very helpful in making Gnome 3 like home. I use about 10 of them. Adding Start Launcher tool is one of them.

  • It’s trivial to disable firewalld then all your old scripts will work just fine with iptables, just like they always have.

    New version of apache, there have always been config changes between versions.

    The service command still works as a wrapper around systemctl. chkconfig won’t work, but you probably won’t be scripting that anyways. Other than that, I don’t like systemd much either, but that topic has been talked to death.

    I have no idea bout this. Feel free to check bugzilla, and/or file a bug report.

    yum remove postfix && yum install sendmail

    Sendmail is still there, it’s just not the default. If you prefer sendmail then by all means use it.

    I can understand this from RedHat’s perspective, CentOS is workign on a
    32 bit build, but it takes time.


  • FYI, you can install sendmail, it’s still available if you want it, it is just no longer the default:

    yum install sendmail

    someday when I move my home system (combined workstation, play-on-it system, and server) to EL7 I’ll be installing Sendmail, simply because I want to “leverage” all the pain I went through over the years to create my own sendmail.mc file, and don’t feel like going thru it again with another MTA.

    I have quibbles with the new installer, and that’s only a small-ish one. I think a “guided” install (like the old Anaconda) is much better because you don’t have to guess what should be done next.

    I believe there are people working on this, it’s just not yet ready for prime time. It’s probably harder than it would have been simply becauase RH did not provide the info/scripts/tools for doing a 32-bit build.

  • Remove firewalld; install iptables. Problem solved. This has been discussed ad nauseum on this list recently.

    Not RedHat specific issues; that’s just progress from upstream.

    This one _is_ nasty; it means you didn’t properly use upstart in RH6, but then again who did? We all stuck with standard init scripts :-)

    Only a default; sendmail is still there to install if you need it.

    You’ve misunderstood kernel support and “type” support. We’ve had 64bit filesizes for many years on 32bit kernels. Changing time_t to 64bits is independent of the hardware being 32 or 64 bit.

    Basically, RHEL is Enterprise (the E); very very few enterprises have
    32bit machines any more.

  • NOTE:

    You can continue to use CentOS-6 until 2020 … CentOS-7 is an option, not at all required for 6 more years.

  • david writes:

    I’m not sure why you’re voicing these here. Since CentOS matches RHEL
    bug-for-bug, you’d stand a better chance of getting your voice heard by talking to Red Hat.

    Define “unusable”. Clearly it’s objectively untrue that it’s “unusable”
    because many people are in fact using it.

    So…you’ve already done the work to adapt your current setup.

    Not sure what you’re referring to here, but again, you’ve already done the work.

    systemd, like it or not, appears to be the current future of Linux, with essentially every distribution adopting it. I can’t say I’m a huge fan of this trend, but it is what it is. And again, you’ve already done the work.

    A quick glance at https://bugzilla.redhat.com/show_bug.cgi?id

  • That’s just an arbitrary choice both on the default side and what you use. Both are available and usable.

    Might have something to do with using XFS as the default filesystem. It has trouble with the 4k stack choice that RH has used on 32-bit systems.

    More problematic, Gnome3 doesn’t work remotely under x2go. You can use MATE from EPEL but even that isn’t exactly like Gnome2.

  • Nobody is _buying_ 32 bit machines any more, but machines sold 10
    years ago were surprisingly robust. It is just unfortunate that you can’t keep software versions consistent across things even to a point where you could count on most of the same command lines working.

  • They were also surprisingly slow. Without any hyperbole, you could almost certainly replace an entire rack of ten year old 1U servers with a single 1U server today for a very reasonable cost and see performance that’s at least equal, with a fraction of the power draw (and associated ongoing costs).

  • easily, and even with the overhead of virtualization, have each of them be far faster.

    I forcefully retired and virtualized any and all remaining ‘netburst’
    (P4) architecture machines in my lab onto a 12 core nethalem based box and each one is way faster even when they are all being blasted at once. SAS rather than SCSI is more robust and reliable (10 year old SCSI cables are fun sources of random glitches).

  • You are doing yourself a disservice. We moved from Sendmail to Postfix when RH made Postfix the default for new installs on EL6. For a while it was somewhat confusing. But, after a brief if painful period of adjustment, the ease of maintaining Postfix when compared to the complexity and contortions necessary to get similar things done in Sendmail more than justified the pain of converting.

    This past year for example we added DKIM and SPF to our outgoing hub and it took virtually no effort to do it. Most of what effort was expended was in discovering just what these two things were and how Postfix was configured to make them work. The actual configuration was trivial.

    We are still running a Sendmail instance on our external MX and I would not dream of touching it to make a similar change at this point. With Postfix we only required a few direct edits to a couple of well documented text files. With Sendmail we have to deal with m4 macros and milters. No thanks.

  • I am a notorious old hardware milker, and even I don’t have any more
    32bit hardware. By the time CentOS 6 is EOL you’d better have gotten rid of all your 32bit hardware!


  • It is a shame to chuck-out perfectly good working machinery – just because someone, somewhere else, decided it should be redundant.

  • I don’t use enough desktop GUI actions to be a good judge. I normally just open a bunch of terminal windows and SSH to other machines with an occasional instance of wireshark or firefox. But, for example, I
    thought I could just drag the terminal icon out of the Gnome2 menus onto the top menu bar or the desktop – but I couldn’t do that in MATE.

  • There is an assumption here that someone would only want to use CentOS
    on the server. I have at least two old laptops in my house that I would love to put CentOS 7 on, giving them decent software and then not having to worry about upgrading the distro for ten years which gives the OS a lifespan comparable to a windows version, I can’t though, because they’re 32 bit. This is also a good way to re-purpose an old laptop or desktop for the underprivileged to use.

    Another thing to consider is that there are still people who want to put a 32 bit OS on a 64 bit VM instance, mainly because VMs tend to have a lot less RAM than you’d see on bare-metal hardware, and the savings in RAM usage of a 32 bit app vs 64 bit one can be significant. These would still be running on 64 bit hardware but using a 32 bit OS *on purpose*.


  • its a shame to waste 1000s of watts of electricity plus air conditioning on a rack full of old computers when a single new computer could replace the whole thing and only use a few 100 watts.

  • Excellent comment about rack-mounted equipment. Never-the-less, to throw-away (or recycle) working equipment seems to me to be a pity – but that is the reality.

    Hopefully ? there is a Linux capable of providing conventional facilities on old, but working, 32-bit desktop and portable equipment which could be given to the needy people.

    Hmm, I wonder when 128-bit processors will appear :-)

  • a 32 bit address got us up to 4,000,000,000 (4 billion) bytes of directly addressible memory.

    a 64 bit address gets you into a 18,440,000,000,000,000,000 byte address space. I think thats 18 zetabytes. It will be a long time before we’ll need a larger address space.

  • Once upon a time, Always Learning said:

    CentOS 6 didn’t just disappear; it should still get updates through 2020
    IIRC (by which time most of the 32 bit only hardware will probably have died). Just because the latest-greatest came out doesn’t mean you have to upgrade to it.

  • indeed. my old server at home still runs linux kernel 2.2.24, with an ipchains firewall on an old p3. it serves a few static html pages with apache 1.3. its an authoritative DNS server, with bind 9.6 that I
    built and configured by hand. I’m hoping to replace it with a pfSense firewall next week, and move my static webpages to my freeNAS box.

  • Of course, the address space is the main consideration. There is one more property: “dynamic range” which is the ratio of maximum number you can use in operation to error (which is the value of least significant bit (LSB)
    multiplied by some small number the last depends on what kind of operation its is, let’s say, you may loose LSB a few times during the operation). But this is really minor thing compared to the size of space one can address, as these can be achieved by programming several regular operations for each operation with “larger” numbers (or “higher precision”

    So, I would just echo what you said: we hardly will see the need in 128
    bit CPUs soon. (BTW, I’m glad to hear the choice which is power of 2. As, in general, the length of CPU word can be anything: 17, 89, … I’m not mentioning 1 which is used in calculators, as 1 _is_ power of 2 ;-)


    Valeri Galtsev Sr System Administrator Department of Astronomy and Astrophysics Kavli Institute for Cosmological Physics University of Chicago Phone: 773-702-4247

  • I don’t think any computer architectures have used word sizes other than a power of 2 multiple of bits in quite a long time, like since the
    1960s. the DECsystem 10 and 20 were 36 bit word machines. The PDP8
    was a 12 bit architecture. there are some low end embedded processors that are 4 bit (but thats a power of 2, also) but virtually everything resembling general purpose computing equipment in use today is
    8/16/32/64 bits.

    note I’m speaking of data size, I know there are numerous ‘Harvard’
    architecture (separate code and data space) embedded machines with odd instruction word sizes. Even most of these use 4/8/16 word sizes.

  • Never experienced 17 or 89 bit machines. In the past I worked on 8 bit,
    16 bit and a very large and expensive 36-bit machine (so expensive was it that the manufacturer offered bribes – my then boss’s boss got caught and was allowed to resign with an unblemished record.)

    Can not image cheap electronic calculators working with 1 bit CPUs.

    Time to create a CentOS OT mailing list ?