Allowing Inheritable NFSv4 Access Control Entries to Override the Umask

J. Fields, Andreas Gruenbacher · 2017

In many environments, inheritable NFSv4 Access Control Entries (ACEs) can be rendered ineffective by the application of the per-process file mode creation mask (umask). This can be addressed by transmitting the umask and create mode as separate pieces of data, allowing the server to make more intelligent decisions about the permissions to set on new files. This document proposes a protocol extension to accomplish that.

Read the paper · More papers on PaperTik