The only way I have found to make this work with NFSv4 sec=krb5 is to
make all volumes +rx by other. This means anyone on the realm/domain can
read every single file on every single Kerberized NFS export unless you
create ACLs to explicitly deny them access. So you must be diligent when
messing aro
This affects my company as well, ever since the snap transition
Kerberos/ GSS won't work in any snaps (also affecting any NFSv4 mounts
with sec=krb5). Our solution going on nearly four years now has been to
maintain our own .deb versions of all packages only offered as a snap.
It's sad because Ubun
2 matches
Mail list logo