To allow NFS manipulate properly the file permissions of users that participate in more than 16 Groups, RPCSEC_GSS and Kerberos need to be used instead the default authentication method (AUTH_SYS). To configure Kerberos and NFSv4, the following article could be used :
成都创新互联-成都网站建设公司,专注网站建设、成都网站建设、网站营销推广,空间域名,虚拟主机,成都网站托管有关企业网站制作方案、改版、费用等问题,请联系成都创新互联。Environment used in this procedure :
Important points :
Packages needed :
On client machine, make it sure that following packages are installed :
On server machine, make it sure that following package is installed :
Configuring Kerberos service on the Server :
1.1 There are a number of files that have to be manually edited on the server :
Edit /etc/krb5.conf
The stock version of this file will have EXAMPLE.COM or example.com everywhere you want to put your own realm or domain name. The two sections in question are libdefaults and domain_realm. The other sections do not need to be changed. In libdefaults, enter your own Kerberos realm name. You may want to set the clock skew to a lower value (provided you are synchronizing time with ntp). The file will look like :
Raw
当前标题:【LINUX】怎样配置NFSv4withkerberos自动认证-创新互联
网页地址:https://www.cdcxhl.com/article30/ehiso.html
成都网站建设公司_创新互联,为您提供自适应网站、静态网站、网站制作、定制开发、网页设计公司、响应式网站
声明:本网站发布的内容(图片、视频和文字)以用户投稿、用户转载内容为主,如果涉及侵权请尽快告知,我们将会在第一时间删除。文章观点不代表本网站立场,如需处理请联系客服。电话:028-86922220;邮箱:631063699@qq.com。内容未经允许不得转载,或转载时需注明来源: 创新互联