AAPL NFS ACE semantics.

Ralph Böhme slow at samba.org
Tue Feb 27 17:45:16 UTC 2018


On Mon, Feb 26, 2018 at 02:55:39PM -0800, Jeremy Allison wrote:
> I see - so the semantics that have are that they combine ACL-set with chmod,
> rather than using a separate single-DACL-entry ACL set.

yes.

> And doing a GETACL returns the mode as the NFS ACE entry.

It returns the ACL and the NFS ACE entry with the mode, yes.

> Hmmmm. It might be easier
> to spec out the SMB2 unix to do the same
> thing (i.e. if someone does a GETACL on
> a UNIX handle the mode is attached as the
> NFS ACE entry) and then do the chmod set
> on SETACL. I think it'd be better to have
> logic where if *only* the NFS ACE entry
> (chmod) is sent (a one-element ACL) then
> the SETACL is skipped and only the chmod
> is done. That would allow separation of
> chmod from ACL set.

yes, that would be good.

-slow

-- 
Ralph Boehme, Samba Team       https://samba.org/
Samba Developer, SerNet GmbH   https://sernet.de/en/samba/



More information about the samba-technical mailing list