Krb5 auth and supplemental groups

J. Bruce Fields bfields at fieldses.org
Fri Sep 1 18:46:57 EDT 2006


On Fri, Sep 01, 2006 at 04:52:08PM -0400, Steve Gaarder wrote:
> I've got a client that mounts a filesystem with sec=krb5.  Things work 
> fine except for group permissions.  Users' supplemental groups are 
> ignored; only the primary group seems to be recognized.  This is under Red 
> Hat Enterprise 4.  Any ideas?

With sec=krb5, the supplemental groups are determined entirely by the
server.  So I assume the list of groups should be essentially what you'd
see if you logged into the server and ran "id username".

--b.


More information about the NFSv4 mailing list