[gpfsug-discuss] Active direcotry based ACLs for Samba and Windows GPFS clients

Jonathan Buzzard jonathan.buzzard at strath.ac.uk
Fri Mar 8 16:18:47 GMT 2024


On 08/03/2024 16:08, Peter Hruška wrote:

> Hello Jonathan,
> 
> Thank you for the answer. Since I used Automatic ID-mapping method for 
> the mmauth deployment I didn't do anything regarding RFC2307.
> I chose this approach because we don't want to use kerberos for NFS 
> authentication (although we will use NFS for separate data access).
> I'll check on that. If you have any hints I would appreciate them.
> 

Consistent mapping won't work without RFC2307bis attributes being 
populated as far as I am aware. Windows knows nothing about the 
idmap_rid, it only knows about SID's

Mixing NFS and Samba out the same file system or at the very least the 
same directory hierarchy is a mugs game. There in lies a gigantic pit of 
woe for all those foolish enough to try based on personal experience.

JAB.

-- 
Jonathan A. Buzzard                         Tel: +44141-5483420
HPC System Administrator, ARCHIE-WeSt.
University of Strathclyde, John Anderson Building, Glasgow. G4 0NG




More information about the gpfsug-discuss mailing list