Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 21 Nov 2017 16:53:11 -0200
From:      Daniel Hilst Selli <daniel@versatushpc.com.br>
To:        freebsd-fs@freebsd.org
Subject:   Restricting zfs metadata view for non-root users.
Message-ID:  <1511290391.2569.35.camel@versatushpc.com.br>

next in thread | raw e-mail | index | archive | help
Hi everybody!

I was testing zfs delegated administration [1]. I see that user without
 permissions couldn't read data from datasets but they still can read
all the zfs metadata. Is this right?

In my setup I have two users, foo and bar. They both have it's own
datasets. As foo I can't read bar's snapshots, but he can list them.

Is there a way to restrict metadata shown to one user? I don't want to
expose snapshots from one user to another but still want they to be
able to do their own backups by sending snapshots to this host.

Regards!
Daniel,

[1]https://www.freebsd.org/doc/handbook/zfs-zfs-allow.html



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?1511290391.2569.35.camel>