Hide Forgot
Document URL: https://access.redhat.com/documentation/en-US/Red_Hat_Storage/3.1/html/Administration_Guide/sect-NFS.html#sect-NFS_Ganesha Section Number and Name: 7.2.4.8. Configuring Kerberized NFS-Ganesha Step 4: Configure the /etc/krb5.conf file and add relevant changes accordingly. For example: Describe the issue: In this step all the user is given is a pre-filled configuration file for the domain "example.com" with no explanation. The direction is to "add" "relevant changes", but there is no explanation how to decide what changes are relevant and which are not. Suggestions for improvement: Add comments to the example config and bold-face the mandatory changes necessary to make this file work. Else link to the RHEL 7 / 6 user guide in which this should be explained in detail. Additional information:
Okay to summarize, existing section needs be updated or cleaned up in below manner - 7.2.4.8. Configuring Kerberized NFS-Ganesha <cleanup the content present here> and instead provide links mentioned below for each of KDC configurations 7.2.4.8.1. Setting up the NFS-Ganesha Server: <content stays as is> 7.2.4.8.2. Setting up the NFS Client <cleanup the content and instead give references to below links> from what I gather here are the links to refer to for each of the KDC configurations available/discussed so far - 1) Using LDAP/RedHat directory server. https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html-single/System-Level_Authentication_Guide/index.html#authconfig-kerberos 2) Using RedHat Identity Management, https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html-single/Linux_Domain_Identity_Authentication_and_Policy_Guide/index.html#setting-up-clients 3) Using IPA server (links I got from concerned team member) - http://linux.web.cern.ch/linux/docs/kerberos-access.shtml https://fedoraproject.org/wiki/QA:Testcase_freeipa_trust_server_installation 4) Active Directory https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html/Windows_Integration_Guide/index.html Of the above, QE has qualified only (1) i.e, using LDAP/RedHat directory server. Request Alok to review above changes suggested and comment on what needs to be documented in the admin guide.
The changes looks good to me. Moving the BZ to verified.
RHGS 3.2.0 GA completed on 23 March 2017