RE: [nfsv4] Re: [NFS] NFSv4 ACL and POSIX interaction / mask, draft-ietf-nfsv4-acls-00 not ready

"Yoder, Alan" <agy@netapp.com> Fri, 14 July 2006 20:02 UTC

Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1G1Ts2-0004g1-90; Fri, 14 Jul 2006 16:02:42 -0400
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1G1Ts0-0004fw-S4 for nfsv4@ietf.org; Fri, 14 Jul 2006 16:02:40 -0400
Received: from mx2.netapp.com ([216.240.18.37]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1G1Trz-00048K-K9 for nfsv4@ietf.org; Fri, 14 Jul 2006 16:02:40 -0400
Received: from smtp1.corp.netapp.com ([10.57.156.124]) by mx2.netapp.com with ESMTP; 14 Jul 2006 13:02:39 -0700
X-IronPort-AV: i="4.06,244,1149490800"; d="scan'208"; a="393039573:sNHT17731532"
Received: from svlexc02.hq.netapp.com (svlexc02.corp.netapp.com [10.57.157.136]) by smtp1.corp.netapp.com (8.13.1/8.13.1/NTAP-1.6) with ESMTP id k6EK2Y6s015871; Fri, 14 Jul 2006 13:02:34 -0700 (PDT)
Received: from exsvlrb02.hq.netapp.com ([10.56.8.63]) by svlexc02.hq.netapp.com with Microsoft SMTPSVC(5.0.2195.6713); Fri, 14 Jul 2006 13:02:34 -0700
Received: from exsvl02.hq.netapp.com ([10.56.8.60]) by exsvlrb02.hq.netapp.com with Microsoft SMTPSVC(6.0.3790.1830); Fri, 14 Jul 2006 13:02:33 -0700
X-MimeOLE: Produced By Microsoft Exchange V6.5
Content-class: urn:content-classes:message
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
Subject: RE: [nfsv4] Re: [NFS] NFSv4 ACL and POSIX interaction / mask, draft-ietf-nfsv4-acls-00 not ready
Date: Fri, 14 Jul 2006 13:05:13 -0700
Message-ID: <992BA60650F1584BA63E339312CE42030595891C@exsvl02.hq.netapp.com>
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
Thread-Topic: [nfsv4] Re: [NFS] NFSv4 ACL and POSIX interaction / mask, draft-ietf-nfsv4-acls-00 not ready
Thread-Index: AcanfdkjIOC9R3znQLSAc5dMm09qMQAAfiTQ
From: "Yoder, Alan" <agy@netapp.com>
To: "J. Bruce Fields" <bfields@fieldses.org>
X-OriginalArrivalTime: 14 Jul 2006 20:02:33.0940 (UTC) FILETIME=[72264140:01C6A780]
X-Spam-Score: 0.0 (/)
X-Scan-Signature: b19722fc8d3865b147c75ae2495625f2
Cc: Sam.Falkner@sun.com, wurzl_mario@emc.com, nfsv4@ietf.org
X-BeenThere: nfsv4@ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: NFSv4 Working Group <nfsv4.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/nfsv4>, <mailto:nfsv4-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www1.ietf.org/pipermail/nfsv4>
List-Post: <mailto:nfsv4@ietf.org>
List-Help: <mailto:nfsv4-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/nfsv4>, <mailto:nfsv4-request@ietf.org?subject=subscribe>
Errors-To: nfsv4-bounces@ietf.org

 
> > Let me see if I understand.
> > 
> > A POSIX ACL client sees ALLOW bfields READ+WRITE
> 
> Not necessarily "POSIX ACL" clients, but clients that request the new
> mask attributes.  Such clients also understand that the relevant mask
> makes that ALLOW effectively the same as just an allow of READ.

   The hell comes from having to explain this on the phone
to mystified customers.  It took years for the phone to stop 
ringing after Netapp's first multiprotocol implementation.  
In fact, it still hasn't completely stopped, in spite of a
huge documentation and education effort.

   But it sounds like you're telling me an admin will
never be able to see different permissions on files depending
on what OS she happens to be looking at them with.  Is that
correct?

Thanks,

Alan

===============================================================
Alan G. Yoder                                    agy@netapp.com
Technical Staff                           
Network Appliance, Inc.                            408-822-6919
===============================================================

_______________________________________________
nfsv4 mailing list
nfsv4@ietf.org
https://www1.ietf.org/mailman/listinfo/nfsv4