NFS Best practices regarding ACL permissions and Maproot user ect?

runevn

Explorer
Joined
Apr 4, 2019
Messages
63
I have just created the following NFS shares that will be connected to my hypervisor (XCP-NG):
  • ISO Storage
  • General VM Storage
  • VM Backup Share
So my question is what is best practice when it comes to permissions?

BTW - the NFS shares are on its own subnet so it is not exposed to the rest of my network.

So far I have create a user "vm" on truenas that owns the datasets (ACL Resticted access) and then I have set the Maproot user to the user "vm" and group to "wheel"on all the NFS shares. But my question is, is this the "right" way to do it?

Any advice would be highly appreciated! And I know that there is proberbly not ONE way to do it but maybe you would share what you do and why?
 
Top