On Fri, Jul 28, 2017 at 7:36 PM, Allan Streib <astr...@indiana.edu> wrote:
> $ cat /etc/exports
> /home/astreib/work/new-site.org -ro -network=
> Everyhing works if I remove the "-network=" from /etc/exports, i.e.:
> /home/astreib/work/new-site.org -ro
> I don't really understand why?

If you don't specify -network, then is treated as the
address (or name) of a specific host.  Since you are going to be
mounting this via, that counts as a host address and
everything works.

If you do specify -network, then is treated as a network
number, and the default netmask would be  I don't know why
that's not working, but (a) I always specify -mask whenever I use
-network, and (b) I always ensure that the host portion of the network
number is all zeros.  So if I were to do it I would use:

/home/astreib/work/new-site.org -ro -network -mask

(I would use as the mask simply because that's the mask the
actual loopback interface is using, but I don't think it actually
matters as far as /etc/exports is concerned -- if you want to use an
unusual mask to allow access to a subset of a network then as far as I
know you should be able to).

Unless you are binding multiple addresses on your loopback interface,
I would just use without -network or -mask and be done with
it.  Why open up the mount to an entire network when you really just
need to open it up to a single host (yourself)?

This is what I do in a similar situation (serving both ftpd and httpd
from the same directory):

relevant line from /etc/exports:
/nfs/archive/dist/OpenBSD -maproot=root -ro

relevant line from /etc/fstab:
localhost:/nfs/archive/dist/OpenBSD /var/www/ftp/pub/OpenBSD nfs
ro,nodev,nosuid 0 0

Works fine for me.


Reply via email to