Re: {READ,WRITE}_NAMED_ATTRS (was RE: [nfsv4] I-D ACTION:draft-ietf-nfsv4-acl-mapping-01.txt)

Marius Aamodt Eriksen <marius@umich.edu> Thu, 12 February 2004 05:27 UTC

Received: from optimus.ietf.org (optimus.ietf.org [132.151.1.19]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id AAA25149 for <nfsv4-archive@odin.ietf.org>; Thu, 12 Feb 2004 00:27:01 -0500 (EST)
Received: from localhost.localdomain ([127.0.0.1] helo=www1.ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1Ar9Mw-0004a5-42 for nfsv4-archive@odin.ietf.org; Thu, 12 Feb 2004 00:26:34 -0500
Received: (from exim@localhost) by www1.ietf.org (8.12.8/8.12.8/Submit) id i1C5QYtq017603 for nfsv4-archive@odin.ietf.org; Thu, 12 Feb 2004 00:26:34 -0500
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1Ar9Mv-0004Zq-W4 for nfsv4-web-archive@optimus.ietf.org; Thu, 12 Feb 2004 00:26:34 -0500
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id AAA25092 for <nfsv4-web-archive@ietf.org>; Thu, 12 Feb 2004 00:26:30 -0500 (EST)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 1Ar9Mt-0004Io-00 for nfsv4-web-archive@ietf.org; Thu, 12 Feb 2004 00:26:31 -0500
Received: from exim by ietf-mx with spam-scanned (Exim 4.12) id 1Ar9Lj-000488-00 for nfsv4-web-archive@ietf.org; Thu, 12 Feb 2004 00:25:20 -0500
Received: from optimus.ietf.org ([132.151.1.19]) by ietf-mx with esmtp (Exim 4.12) id 1Ar9L0-0003xC-00 for nfsv4-web-archive@ietf.org; Thu, 12 Feb 2004 00:24:34 -0500
Received: from localhost.localdomain ([127.0.0.1] helo=www1.ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1Ar9Ke-0003Nj-IT; Thu, 12 Feb 2004 00:24:12 -0500
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1Ar8ei-0001Hd-OY for nfsv4@optimus.ietf.org; Wed, 11 Feb 2004 23:40:52 -0500
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id XAA23611 for <nfsv4@ietf.org>; Wed, 11 Feb 2004 23:40:50 -0500 (EST)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 1Ar8eg-0007lx-00 for nfsv4@ietf.org; Wed, 11 Feb 2004 23:40:50 -0500
Received: from exim by ietf-mx with spam-scanned (Exim 4.12) id 1Ar8dj-0007hR-00 for nfsv4@ietf.org; Wed, 11 Feb 2004 23:39:52 -0500
Received: from smtp.engin.umich.edu ([141.213.75.24] ident=root) by ietf-mx with esmtp (Exim 4.12) id 1Ar8cy-0007cy-00 for nfsv4@ietf.org; Wed, 11 Feb 2004 23:39:04 -0500
Received: from [192.168.0.61] (eecs497b.eecs.umich.edu [141.213.10.149]) (authenticated bits=0) by smtp.engin.umich.edu (8.12.9/8.12.9) with ESMTP id i1C4d1r9026164 (version=TLSv1/SSLv3 cipher=RC4-SHA bits=128 verify=NO); Wed, 11 Feb 2004 23:39:02 -0500 (EST)
In-Reply-To: <LCEAJMHHKPKEPAIDBBEKCEAFCBAA.bhalevy@panasas.com>
References: <LCEAJMHHKPKEPAIDBBEKCEAFCBAA.bhalevy@panasas.com>
Mime-Version: 1.0 (Apple Message framework v612)
Content-Type: text/plain; charset="US-ASCII"; format="flowed"
Message-Id: <6376D676-5D15-11D8-BB16-000A95CEA038@umich.edu>
Content-Transfer-Encoding: 7bit
Cc: "J. Bruce Fields" <bfields@fieldses.org>, nfsv4@ietf.org
From: Marius Aamodt Eriksen <marius@umich.edu>
Subject: Re: {READ, WRITE}_NAMED_ATTRS (was RE: [nfsv4] I-D ACTION:draft-ietf-nfsv4-acl-mapping-01.txt)
To: Benny Halevy <bhalevy@panasas.com>
X-Mailer: Apple Mail (2.612)
Content-Transfer-Encoding: 7bit
Sender: nfsv4-admin@ietf.org
Errors-To: nfsv4-admin@ietf.org
X-BeenThere: nfsv4@ietf.org
X-Mailman-Version: 2.0.12
Precedence: bulk
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/nfsv4>, <mailto:nfsv4-request@ietf.org?subject=unsubscribe>
List-Id: NFSv4 Working Group <nfsv4.ietf.org>
List-Post: <mailto:nfsv4@ietf.org>
List-Help: <mailto:nfsv4-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/nfsv4>, <mailto:nfsv4-request@ietf.org?subject=subscribe>
List-Archive: <https://www1.ietf.org/mail-archive/working-groups/nfsv4/>
X-Original-Date: Wed, 11 Feb 2004 23:39:05 -0500
Date: Wed, 11 Feb 2004 23:39:05 -0500
X-Spam-Checker-Version: SpamAssassin 2.60 (1.212-2003-09-23-exp) on ietf-mx.ietf.org
X-Spam-Status: No, hits=0.0 required=5.0 tests=none autolearn=no version=2.60
Content-Transfer-Encoding: 7bit
Content-Transfer-Encoding: 7bit

On Feb 11, 2004, at 23:10, Benny Halevy wrote:

> I've been thinking more about the READ and WRITE NAMED_ATTRS
> ACE access masks and I think I have more questions than
> answers at this point.
>
> In draft-ietf-nfsv4-acl-mapping-01.txt you tie these access masks
> with READ and WRITE DATA respectively. Is this the right thing to do?

while there does not seem to be any defined behavior in posix for this; 
the extended attributes implementation in linux implements this scheme 
(and is why we adapted it).

> Say you want to present some of the named attributes such
> as "Description" or "Artist" or "Icon" when listing a directory.
> You would want to be able to read their contents even when you are
> not allowed to read the file's data.

the problem is that there is no way to express this with posix acls.  
however the scheme we have adapted is consistent with what is being 
used together with posix acls in real systems today.  but i do agree -- 
some users may wish for finer granularity, but we will not be able to 
express that in terms of posix ACLs.

marius.

--
marius a eriksen <marius@umich.edu> | 
http://www.citi.umich.edu/u/marius/


_______________________________________________
nfsv4 mailing list
nfsv4@ietf.org
https://www1.ietf.org/mailman/listinfo/nfsv4