Allowing Inheritable NFSv4 Access Control Entries to Override the Umask
RFC 8275, “Allowing Inheritable NFSv4 Access Control Entries to Override the Umask”, is a Proposed Standard document published in December 2017 by J. Fields, A. Gruenbacher. The canonical text is published by the RFC Editor.
Abstract
In many environments, inheritable NFSv4 Access Control Entries (ACEs) can be rendered ineffective by the application of the per-process file mode creation mask (umask). This can be addressed by transmitting the umask and create mode as separate pieces of data, allowing the server to make more intelligent decisions about the permissions to set on new files. This document proposes a protocol extension to accomplish that.
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 8275 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 8274 Incident Object Description Exchange Format Usage Guidance
- RFC 8276 File System Extended Attributes in NFSv4
- RFC 8273 Unique IPv6 Prefix per Host
- RFC 8277 Using BGP to Bind MPLS Labels to Address Prefixes
- RFC 8272 TinyIPFIX for Smart Meters in Constrained Networks
- RFC 8271 Updates to the Resource Reservation Protocol for Fast Reroute of Traffic Engineering GMPLS Label Switched Paths
- RFC 8279 Multicast Using Bit Index Explicit Replication
- RFC 8270 Increase the Secure Shell Minimum Recommended Diffie-Hellman Modulus Size to 2048 Bits