This section describes how to create an NFS share. After an NFS share is created, shared namespaces are accessible to clients that run SLES, RHEL, HP-UX, Sun Solaris, IBM AIX, and macOS.
The Create NFS Share page is displayed.
The description can be left blank or contain up to 255 characters.
The Add Client page is displayed.
Table 1 describes related parameters.
Parameter |
Description |
|---|---|
Type |
Indicates the client type of the NFS share.
NOTE:
When a client is included in multiple share permissions, the priority of share authentication from high to low is in the following sequence: host name > IP address > network segment > wildcard > network group > *. |
Name or IP Address |
When Type is set to Host, enter client host names (FQDNs are recommended), IP addresses, or IP address segments, or use the asterisk (*) to represent IP addresses of all clients. When Type is set to Network group, enter the network group names configured in the LDAP or NIS domain.
NOTE:
You can enter multiple host names, IP addresses, or network group names separated by semicolons (;), spaces, or carriage returns. A host name:
For IP addresses:
A network group name:
|
UNIX Permission Level |
Indicates the permission level for a UNIX client to access the NFS share. Possible options are:
|
Kerberos5 Permission |
Indicates the permission level for the Kerberos5 client to access the NFS share. Possible options are:
This parameter applies only to the scenario where the NFS Kerberos service is configured. |
Kerberos5i Permission |
Indicates the permission level for the Kerberos5i client to access the NFS share. Possible options are:
This parameter applies only to the scenario where the NFS Kerberos service is configured. |
Kerberos5p Permission |
Indicates the permission level for the Kerberos5p client to access the NFS share. Possible options are:
This parameter applies only to the scenario where the NFS Kerberos service is configured. |
In the NFS Kerberos service application scenario, the settings of Kerberos5 Permission, Kerberos5i Permission, and Kerberos5p Permission in the preceding table must match the sec field specified when an NFS share is mounted on a client.
For example, if the sec field is set to krb5i when an NFS share is mounted to a client, at least Kerberos5i Permission must be set for the client.
Parameter |
Description |
|---|---|
Write Mode |
Indicates how the system writes data onto disks.
|
Permission Constraint |
Indicates whether to retain the user ID (UID) and group ID (GID) of a shared directory.
|
root Permission Constraint |
Controls the root permission of the client.
|
Source Port Verification Constraint |
Indicates whether to enable source port verification.
|