From: Noam Meltzer Subject: Re: [PATCH v2 0/5] NFSv4 rpc.idmapd plugin Date: Thu, 20 Mar 2014 09:33:45 +0200 Message-ID: References: <1393918676-20865-1-git-send-email-noam@primarydata.com> <5321CDB6.7010803@RedHat.com> <1394729939.32465.231.camel@willson.li.ssimo.org> <20140313172531.GA7124@fieldses.org> <1394732462.32465.235.camel@willson.li.ssimo.org> Reply-To: Development of the System Security Services Daemon Mime-Version: 1.0 Content-Type: multipart/mixed; boundary="===============6974286707529319790==" Cc: "J. Bruce Fields" , linux-nfs@vger.kernel.org, Steve Dickson , sssd-devel To: Simo Sorce Return-path: In-Reply-To: <1394732462.32465.235.camel-Hs+ccMQdwurzDu64bZtGtWD2FQJk+8+b@public.gmane.org> List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Sender: sssd-devel-bounces@lists.fedorahosted.org Errors-To: sssd-devel-bounces@lists.fedorahosted.org List-ID: --===============6974286707529319790== Content-Type: multipart/alternative; boundary=089e0115ec1415b15704f504ca88 --089e0115ec1415b15704f504ca88 Content-Type: text/plain; charset=ISO-8859-1 On Thu, Mar 13, 2014 at 7:41 PM, Simo Sorce wrote: > On Thu, 2014-03-13 at 13:25 -0400, J. Bruce Fields wrote: > > On Thu, Mar 13, 2014 at 12:58:59PM -0400, Simo Sorce wrote: > > > On Thu, 2014-03-13 at 11:24 -0400, Steve Dickson wrote: > > > > > > > V4 servers now have an option of returning a uid string (aka "3606") > > > > where the NFS client just converts that into the uid. > > > > > > Can the client tell the server *not to do that* ? > > > > The client can use kerberos, in which case the server won't do that. > > This is sufficient, thanks. > > > Other than that, no, the behavior can only be controlled by server-side > > configuration. > > A little sub-optimal if the server can do either but the client can have > a choice, but ok. > Sorry for the late response. A misplaced email filtering rule had moved it away from my inbox. How can we push this forward? -- Noam Meltzer Linux Software Engineer PRIMARY DATA P.O. Box 12650, Herzliya Pituach 4673300 9 Hamenofim St. Akerstein Towers, Tower A, 5th fl. Herzliya Office: +972-77-8981888 | Fax: +972-3-7617140 | Mobile: +972-54-5873843 Email: noam@primarydata.com --089e0115ec1415b15704f504ca88 Content-Type: text/html; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable



On Thu, Mar 13, 2014 at 7:41 PM, Simo Sorce <<= a href=3D"mailto:simo@redhat.com" target=3D"_blank">simo@redhat.com>= wrote:
On Thu, 2014-03-13 at 13:25 = -0400, J. Bruce Fields wrote:
> On Thu, Mar 13, 2014 at 12:58:59PM -0400, Simo Sorce wrote:
> > On Thu, 2014-03-13 at 11:24 -0400, Steve Dickson wrote:
> >
> > > V4 servers now have an option of returning a uid string (aka= "3606")
> > > where the NFS client just converts that into the uid.
> >
> > Can the client tell the server *not to do that* ?
>
> The client can use kerberos, in which case the server won't do tha= t.

This is sufficient, thanks.

> Other than that, no, the behavior can only be controlled by server-sid= e
> configuration.

A little sub-optimal if the server can do either but the client can h= ave
a choice, but ok.

Sorry for the late response. A misplaced email filtering rule had moved i= t away from my inbox.
How can we push t= his forward?

--
Noam Meltzer
Linux Software = Engineer
PRIMARY DATA

P.O. Box 12650, Herzliya Pituach 46733009 Hamenofim St. Akerstein Towers, Tower A, 5th fl. Herzliya

Office: +972-77-8981888 | Fax: +972-3-7617140 | Mobile: +972-54-5873843=

Email: no= am@primarydata.com

--089e0115ec1415b15704f504ca88-- --===============6974286707529319790== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: inline X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX18Kc3NzZC1kZXZl bCBtYWlsaW5nIGxpc3QKc3NzZC1kZXZlbEBsaXN0cy5mZWRvcmFob3N0ZWQub3JnCmh0dHBzOi8v bGlzdHMuZmVkb3JhaG9zdGVkLm9yZy9tYWlsbWFuL2xpc3RpbmZvL3Nzc2QtZGV2ZWwK --===============6974286707529319790==--