This section describes how to create an NFS share. After an NFS share is created, shared namespaces are accessible to clients that run SUSE, Red Hat, HP-UNIX, Sun Solaris, IBM AIX, and Mac OS.
The Create NFS Share page is displayed.
The description can be left blank or contain up to 255 characters.
The Add Client page is displayed.
Table 1 describes related parameters.
Parameter |
Description |
|---|---|
Type |
Client type of the NFS share.
NOTE:
When a client is included in multiple share permissions, the priority of share authentication from high to low is in the following sequence: host name > IP address > network segment > wildcard > network group > *. |
Name or IP Address |
When Type is set to Host, enter client host names (FQDNs are recommended), IP addresses, or IP address segments, or use the asterisk (*) to represent IP addresses of all clients. When Type is set to Network group, enter the network group names configured in the LDAP or NIS domain.
NOTE:
You can enter multiple host names, IP addresses, or network group names separated by semicolons (;), spaces, or carriage returns. A host name:
For IP addresses:
A network group name:
|
UNIX Permission Level |
Permission level for the UNIX client to access the NFS share, including:
NOTE:
When a share is created for the audit log namespace, you cannot set the permission to Read/Write. |
Kerberos5 Permission |
Permission level for the Kerberos5 client to access the NFS share, including:
This parameter applies only to the scenario where the NFS Kerberos service is configured.
NOTE:
When a share is created for the audit log namespace, you cannot set the permission to Read/Write. |
Kerberos5i Permission |
Permission level for the Kerberos5i client to access the NFS share, including:
This parameter applies only to the scenario where the NFS Kerberos service is configured.
NOTE:
When a share is created for the audit log namespace, you cannot set the permission to Read/Write. |
Kerberos5p Permission |
Permission level for the Kerberos5p client to access the NFS share, including:
This parameter applies only to the scenario where the NFS Kerberos service is configured.
NOTE:
When a share is created for the audit log namespace, you cannot set the permission to Read/Write. |
In the NFS Kerberos service application scenario, the settings of Kerberos5 Permission, Kerberos5i Permission, and Kerberos5p Permission in the preceding table must match the sec field specified when an NFS share is mounted on a client.
For example, if the sec field is set to krb5i when an NFS share is mounted to a client, at least Kerberos5i Permission must be set for the client.
Parameter |
Description |
|---|---|
Write Mode |
How the system writes data onto disks.
|
Permission Constraint |
Whether to retain the user ID (UID) and group ID (GID) of a shared directory.
|
root Permission Constraint |
Whether to allow the root permission of the client.
|
Source Port Verification Constraint |
Whether to enable source port verification.
|