Skip to content
Snippets Groups Projects
Commit e55d1b75 authored by Jan Siwiec's avatar Jan Siwiec
Browse files

Update nfs4-file-acl.md

parent 71f00a1a
No related branches found
No related tags found
1 merge request!323extended-acls-storage-section
NFSv4 ACL
==================
at the first - knowledge of ACL is necessary
# NFSv4 ACL
At the first - knowledge of ACL is necessary
ACL - access control list
ACE - access control entry
......@@ -8,9 +8,11 @@ ACE - access control entry
An NFSv4 ACL consists of one or more NFSv4 ACEs, each delimited by commas or whitespace.
An NFSv4 ACE is written as a colon-delimited, 4-field string in the following format:
<type>:<flags>:<principal>:<permissions>
``` code
<type>:<flags>:<principal>:<permissions>
```
``` code
[root@login2.salomon proj1]# nfs4_getfacl open-20-11
# file: open-20-11
......@@ -22,25 +24,24 @@ A:fdi:OWNER@:rwaDxtTcCy
A:fdi:GROUP@:rxtcy
A:fdig:open-20-11@it4i.cz:rwaDxtcy
A:fdi:EVERYONE@:tcy
* <type> - one of:
'A' allow
'D' deny
'U' audit
'L' alarm
* <flags> - zero or more (depending on <type>) of:
'f' file-inherit
'd' directory-inherit
'p' no-propagate-inherit
'i' inherit-only
'S' successful-access
'F' failed-access
'g' group (denotes that <principal> is a group)
* <principal> - named user or group, or one of: "OWNER@", "GROUP@", "EVERYONE@"
```
´
* <type> - one of:
'A' allow
'D' deny
'U' audit
'L' alarm
* <flags> - zero or more (depending on <type>) of:
'f' file-inherit
'd' directory-inherit
'p' no-propagate-inherit
'i' inherit-only
'S' successful-access
'F' failed-access
'g' group (denotes that <principal> is a group)
* <principal> - named user or group, or one of: "OWNER@", "GROUP@", "EVERYONE@"
* <permissions> - one or more of:
'r' read-data / list-directory
'w' write-data / create-file
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment