跳转到主内容

可以挂载NTFS卷/qtree、但非root NFS用户无法访问

Views:
3
Visibility:
Public
Votes:
0
Category:
ontap-9
Specialty:
nas<a>2010031178</a>
Last Updated:

适用场景

  • ONTAP 9.
  • NFS

问题描述

  • 可以成功挂载采用NTFS安全模式的卷或qtree 、但是、尝试使用""cd命令访问此卷或qtree时会触发""Permission Denied错误。
  • 安全跟踪如下所示:

Node1     1    Security Style: NTFS and    Access is not granted for:
                     NT ACL                     "Lookup", "Modify", "Extend",
                                               "Read"
                     Protocol: nfs
                     Volume: Vol1
                     Share: -
                     Path: /qtree1
                     Win-User: -
                     UNIX-User: 111
                     Session-ID: -

  • 命令的输出 vserver file-directory show -vserver vs1 -path /complete_path 确认用户具有指定路径所需的权限。

  Vserver: vs1
        File Path: /path
    File Inode Number: 64
     Security Style: ntfs
     Effective Style: ntfs
     DOS Attributes: 10
DOS Attributes in Text: ----D---
Expanded Dos Attributes: -
      UNIX User Id: 0
      UNIX Group Id: 0
     UNIX Mode Bits: 777
UNIX Mode Bits in Text: rwxrwxrwx
          ACLs: NTFS Security Descriptor
             Control:0x9xy4
             Owner:BUILTIN\Administrators
             Group:BUILTIN\Administrators
             DACL - ACEs
              ALLOW-xxcx\xx_AdmixssPriv-0xxcxcf-OI|CI

  • Unix用户的名称映射已存在、并且已正确映射到Windows用户

Sign in to view the entire content of this KB article.

New to NetApp?

Learn more about our award-winning Support

NetApp provides no representations or warranties regarding the accuracy or reliability or serviceability of any information or recommendations provided in this publication or with respect to any results that may be obtained by the use of the information or observance of any recommendations provided herein. The information in this document is distributed AS IS and the use of this information or the implementation of any recommendations or techniques herein is a customer's responsibility and depends on the customer's ability to evaluate and integrate them into the customer's operational environment. This document and the information contained herein may be used solely in connection with the NetApp products discussed in this document.