From: Björn Jacke Date: Mon, 20 Jun 2022 19:13:32 +0000 (+0200) Subject: docs-xml: add nfs4.xml.include documenting the generic NFS4 ACL parameters X-Git-Tag: tevent-0.13.0~337 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=7011573e13f246d5ed66ebfc47b08dd1fa0bfc14;p=thirdparty%2Fsamba.git docs-xml: add nfs4.xml.include documenting the generic NFS4 ACL parameters Signed-off-by: Bjoern Jacke Reviewed-by: Christof Schmitt --- diff --git a/docs-xml/manpages/nfs4.xml.include b/docs-xml/manpages/nfs4.xml.include new file mode 100644 index 00000000000..29cad9eb95c --- /dev/null +++ b/docs-xml/manpages/nfs4.xml.include @@ -0,0 +1,57 @@ + + + + nfs4:mode = [ simple | special ] + + + Controls substitution of special IDs (OWNER@ and GROUP@) on NFS4 ACLs. + The use of mode simple is recommended. + In this mode only non inheriting ACL entries for the file owner + and group are mapped to special IDs. + + + The following MODEs are understood by the module: + + simple(default) - use OWNER@ and GROUP@ special IDs for non inheriting ACEs only. + special(deprecated) - use OWNER@ and GROUP@ special IDs in ACEs for all file owner and group ACEs. + + + + + + + nfs4:acedup = [dontcare|reject|ignore|merge] + + + This parameter configures how Samba handles duplicate ACEs encountered in NFS4 ACLs. + They allow creating duplicate ACEs with different bits for same ID, which may confuse the Windows clients. + + + Following is the behaviour of Samba for different values : + + dontcare - copy the ACEs as they come + reject (deprecated) - stop operation and exit with error on ACL set op + ignore (deprecated) - don't include the second matching ACE + merge (default) - bitwise OR the 2 ace.flag fields and 2 ace.mask fields of the 2 duplicate ACEs into 1 ACE + + + + + + + nfs4:chown = [yes|no] + + This parameter allows enabling or disabling the chown supported + by the underlying filesystem. This parameter should be enabled with + care as it might leave your system insecure. + Some filesystems allow chown as a) giving b) stealing. It is the latter + that is considered a risk. + Following is the behaviour of Samba for different values : + + yes - Enable chown if as supported by the under filesystem + no (default) - Disable chown + + + + +