RedHat Enterprise 4 (workstation) & Kerberized NFS

Markus Bölter markus.boelter at micronas.com
Thu Jul 26 11:10:55 EDT 2007


Hi!

Wow - I am impressed about the interest on my notes. Good to hear -  
thanks
for that!

> RHEL4 has the 2.6.9 kernel, and I was told at a recent conference  
> by some
> redhat reps that kerberized nfs is not supported in RHEL4.

It works for me on i386 as server and client. For x86_64 I had to use  
RHEL5
as a server, client tests it didn't do on x86_64.

> Markus - are you getting usr/group info from your AD as well?  If  
> so, how
> did you do it (adding posix usr/group info to your AD?) - I'd love  
> to see
> your notes.

I use the product VAS (http://www.quest.com/Vintela-Authentication- 
Services/)
to fetch this information from the AD.

Originally my task here at work was to implement a kerberized NFS  
solution
in an AD environment, explicitely with help of VAS. Please have this  
in mind
when reading my notes which can be found on:
http://www.rebooten.de/VAS_and_NFSv4_on_RedHat_Enterprise_Linux_4.html

Currently, VAS is only "esential" as an entry in nsswitch.conf, every  
other part can
easily done without help of VAS. Please find the steps i.e. to create  
a nfs/-SPN in
AD for a Linux computer on:
http://nfsworld.blogspot.com/2005/06/using-active-directory-as-your- 
kdc-for.html
(I am sure most of you know this blog post)

I took this post for the initial start of my work and started to  
change things to
use VAS because this is what my work originally was about.

I would really be happy to hear some thoughts, comments, suggestions  
ideas
or compains about my notes! :-)

Markus


Micronas GmbH
Company Headquarters / Sitz der Gesellschaft: Freiburg i. Br. - Municipal Court of / Amtsgericht: Freiburg i. Br. HRB 428. VAT ID / USt-IdNr.: DE 811127087
Management / Geschaftsfuhrung: Dr. Wolfgang Kalsbach, Chairman / Vorsitzender, Hans-Jurgen Desor, Klaus Heberle,
Nikolaus V. Kaeppeler, Wilfried Lowinski, Dirk Wieberneit, Wolfgang Kuhn - Chairman of Supervisory Board / Vorsitzender des Aufsichtsrats: Heinrich W. Kreutzer




More information about the NFSv4 mailing list