Uploaded image for project: 'Product Technical Learning'
  1. Product Technical Learning
  2. PTL-8078

RH436-22: NFS no_root_squash option is bad example security wise

XMLWordPrintable

      URL:
      Reporter RHNID:
      Section: -
      Language:
      Workaround:

      Description: Question posted to list, answer by Rudi. [Note this issue also appears in RH436-rhel6.2]

      > 2. [Unit 5] exportfs options
      > a. Why no_root_squash?
      > I hate to see this taught to students without a clear warning or
      > explanation. Is there a specific issue (and bug tracker for feedback and
      > future change) or is this simply for the convenience of our testing in the
      > exercises.
      > I can see some specific cases where the resource is only used by other
      > resources and may need that option but this should be an edge case with
      > careful consideration of the security implications.
      > If it is for convenience, please remove the no_root_squash option from the
      > samples in the lecture content and only use it in the practice and lab
      > exercises.

      This is for pure convenience. Actually i do see your point, that there could be a warning about it.

              rht-sbonnevi Steven Bonneville
              lauber Susan Lauber
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: