PowerScale:瞭解 NFSv4 非預設設定

Summary: 瞭解 NFSv4 非預設設定。

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Instructions

有時,預設的 NFSv4 設定會產生意外的結果。可能會發生下列問題,並可依指示進行調整。最佳做法建議避免使用非預設設置,因為它們通常會破壞 NFSv4 訪問控制清單 (ACL) 支援。

  • NFSv4 網域未設定:根帳戶擁有權顯示為 nobody:nobody,而非 root 使用者顯示正確 user:group 上下文。若無網域資訊,則不可能在掛接上提供 ACL 支援。
  • 已設定 NFSv4 網域:根帳戶擁有權顯示為 root:wheel 而不是 root:root。如果根存取至關重要,請在 Isilon 區域或 Linux 用戶端上設定 root GID。此選項與使用多個 NFSv4 區域的環境最相關。不建議編輯系統區域。

為什麼根顯示為 root:wheel:NFSv4 會從伺服器傳回 UID 和 GID 名稱。在 OneFS 中, 0:0 映射到 root:wheel。Linux 系統可能缺少 wheel 群組或指派給其 GID 10。因應措施需要為 NFSv4 區域使用本機提供者檔案,但不建議修改系統區域。

另一個選項是編輯用戶端檔,如 KB 中所述:啟用 no_root_squash 的 NFSv4 匯出會在 Linux 用戶端上使用群組輪,而非群組根。此方法將 root 新增到 中的輪組 /etc/group

  • NFSv4 無名稱設定為非預設為「是」:此設定會傳送 UID/GID,而不是 user@domain。根帳戶擁有權顯示為 root:root,但 ACL 支援失敗,因為協定要求 user@domain 每個 RFC 的語法。

NFS 區域設定的技術詳細資料,請參閱上下文相關說明。

CLUSTER# isi nfs settings zone modify -h
Description:
    Change the default NFS zone options.
Required Privileges:
    ISI_PRIV_NFS
Usage:
    isi nfs settings zone modify
        [--nfsv4-domain <string>]
        [--revert-nfsv4-domain]
        [--nfsv4-replace-domain <boolean>]
        [--revert-nfsv4-replace-domain]
        [--nfsv4-no-domain <boolean>]
        [--revert-nfsv4-no-domain]
        [--nfsv4-no-domain-uids <boolean>]
        [--revert-nfsv4-no-domain-uids]
        [--nfsv4-no-names <boolean>]
        [--revert-nfsv4-no-names]
        [--nfsv4-allow-numeric-ids <boolean>]
        [--revert-nfsv4-allow-numeric-ids]
        [--zone <string>]
        [{--verbose | -v}]
        [{--help | -h}]
Options:
    --nfsv4-domain <string>
        NFSv4 domain name.
    --revert-nfsv4-domain
        Set value to system default for --nfsv4-domain.
    --nfsv4-replace-domain <boolean>
        Replace owner/group domain with nfs domainname. (v4).
    --revert-nfsv4-replace-domain
        Set value to system default for --nfsv4-replace-domain.
    --nfsv4-no-domain <boolean>
        Send owners/groups without domainname (v4).
       
    --revert-nfsv4-no-domain
        Set value to system default for --nfsv4-no-domain.
    --nfsv4-no-domain-uids <boolean>
        Send UIDs/GIDs without domainname (v4).
    --revert-nfsv4-no-domain-uids
        Set value to system default for --nfsv4-no-domain-uids.
    --nfsv4-no-names <boolean>
        Always send owners/groups as UIDs/GIDs (v4).
    --revert-nfsv4-no-names
        Set value to system default for --nfsv4-no-names.
    --nfsv4-allow-numeric-ids <boolean>
        Send owners/groups as UIDs/GIDs when lookups fail or if no_names=1 (v4).
    --revert-nfsv4-allow-numeric-ids
        Set value to system default for --nfsv4-allow-numeric-ids.
    --zone <string>
        Access zone.
  Display Options:
    --verbose | -v
        Display more detailed information.
    --help | -h
        Display help for this command.



命令行介面的預設值: 

CLUSTER# isi nfs settings zone view
           NFSv4 Domain: localhost
   NFSv4 Replace Domain: Yes
        NFSv4 No Domain: No
   NFSv4 No Domain UIDs: Yes
         NFSv4 No Names: No
NFSv4 Allow Numeric IDs: Yes


WebUI 的預設值:

WebUI 頁面 

Additional Information

Affected Products

Isilon

Products

Isilon
Article Properties
Article Number: 000023023
Article Type: How To
Last Modified: 27 Nov 2025
Version:  4
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.