Bug 1285126
Summary: | RFE: GlusterFS NFS does not implement an all_squash volume setting | ||
---|---|---|---|
Product: | [Community] GlusterFS | Reporter: | Earl Ruby <earl> |
Component: | protocol | Assignee: | bugs <bugs> |
Status: | CLOSED CURRENTRELEASE | QA Contact: | |
Severity: | low | Docs Contact: | |
Priority: | low | ||
Version: | mainline | CC: | atumball, bugs, earl, ndevos, pasik |
Target Milestone: | --- | Keywords: | EasyFix, FutureFeature, Triaged |
Target Release: | --- | ||
Hardware: | All | ||
OS: | All | ||
Whiteboard: | |||
Fixed In Version: | glusterfs-6.0 | Doc Type: | Enhancement |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2019-03-25 16:30:11 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Description
Earl Ruby
2015-11-24 23:52:01 UTC
Advanced configuration options for uid/gid squashing is available through NFS-Ganesha. Only very little work is put into Gluster/NFS, NFS-Ganesha will become the preferred NFS-server in the future. If you rely on this functionality, you probably should give NFS-Ganesha with FSAL_GLUSTER a try. --- The server.*-squash options are not NFS specific, they are usable for FUSE mounts and libgfapi access as well. It probably makes sense to provide a server.all-squash option that makes all access to the volume done through the anonymous user/group (anonuid/anongid). However, the server.root-squash is volume wide option, and can only be turned on/off. It might be more useful to have a server.all-squash option that checks for the IP-address instead of an all-or-nothing switch. Earl, could you explain a little about the expected feature and config options that you would like to see? The request was to implement all_squash, anonuid and anongid. The example given in https://bugzilla.redhat.com/show_bug.cgi?id=1043886 was the export line: /home/joe pc001(rw,all_squash,anonuid=150,anongid=100) ... which will map all incoming user requests to UID 150, GID 100. glusterfs-3.6.1 implements root_squash, anonuid and anongid. root_squash maps UID 0 / GID 0 requests to anonuid / anongid. all_squash should map ALL UIDs to anonuid and ALL GIDs to anongid. I recommend marking it as DEFERRED, as we are not planning to fix it any time soon! But keeping it here for somemore time to see if anyone can pick it up (as I added EasyFix flag). Happy for getting some help! REVIEW: https://review.gluster.org/21607 (protocol/server: support server.all-squash) posted (#1) for review on master by Xue Chuanyu REVIEW: https://review.gluster.org/21607 (protocol/server: support server.all-squash) posted (#9) for review on master by Amar Tumballi This bug is getting closed because a release has been made available that should address the reported issue. In case the problem is still not fixed with glusterfs-6.0, please open a new bug report. glusterfs-6.0 has been announced on the Gluster mailinglists [1], packages for several distributions should become available in the near future. Keep an eye on the Gluster Users mailinglist [2] and the update infrastructure for your distribution. [1] https://lists.gluster.org/pipermail/announce/2019-March/000120.html [2] https://www.gluster.org/pipermail/gluster-users/ |