NFSv4 + Kerberos + users

zoltan.menyhart@libertysurf.fr zoltan.menyhart at libertysurf.fr
Tue Jun 5 10:58:53 EDT 2007


Hi,

I've set up NFSv4 + Kerberos according to the guide on page
http://www.citi.umich.edu/projects/nfsv4/linux/krb5-setup.html
using nfs-utils-1.0.11 + nfs-utils-1.0.11-CITI_NFS4_ALL-1.dif
and linux-2.6.19-rc6 + linux-2.6.19-rc6-CITI_NFS4_ALL-1.diff.
It works.

I'd like to set it up using personalized principals: instead of
nfs/<machine>.<domain> I'd like to specify <user x>/@<realm>
or <user x>/<machine>.<domain>@<realm> for mount
(meaning <user x> can mount a file system on a specific
machine or on all machines in the realm).
How can I do it?
How can I allow at the server side <user x> to mount a file
system (, and disallow <user y>)?

Where does rpc.svcgssd keep its TGT?
Apparently, it never expires.
Is there a way to make it forget its TGT?

Thanks,

Zoltan Menyhart



------------------------ ALICE C'EST ENCORE MIEUX AVEC CANAL+ LE BOUQUET ! ---------------
Découvrez vite l'offre exclusive ALICEBOX et CANAL+ LE BOUQUET, en cliquant ici http://alicebox.fr
Soumis à conditions.




More information about the NFSv4 mailing list