From patchwork Fri Mar 8 19:46:30 2013 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Chuck Lever X-Patchwork-Id: 2240221 Return-Path: X-Original-To: patchwork-linux-nfs@patchwork.kernel.org Delivered-To: patchwork-process-083081@patchwork1.kernel.org Received: from vger.kernel.org (vger.kernel.org [209.132.180.67]) by patchwork1.kernel.org (Postfix) with ESMTP id 5CCAA40077 for ; Fri, 8 Mar 2013 19:46:47 +0000 (UTC) Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1753820Ab3CHTqe (ORCPT ); Fri, 8 Mar 2013 14:46:34 -0500 Received: from mail-ie0-f175.google.com ([209.85.223.175]:42405 "EHLO mail-ie0-f175.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1753778Ab3CHTqc (ORCPT ); Fri, 8 Mar 2013 14:46:32 -0500 Received: by mail-ie0-f175.google.com with SMTP id c12so2502785ieb.6 for ; Fri, 08 Mar 2013 11:46:32 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=x-received:sender:from:subject:to:cc:date:message-id:in-reply-to :references:user-agent:mime-version:content-type :content-transfer-encoding; bh=j22LWElySHSRTySdyUwncRDqv0inC9yc0pzLTbWbt7A=; b=LzeUjKsVZQJMJi5pU3FxydlRIZ8RRAavuzauoyfJzs1qSgDzSKG7m2jw7RKKaANNUt cdlQluPw5nHmjqewLIB/74GdBVi5LVcE6XVyX7e47hafkilXzaNOxIebBdFxzbSnrn4T C0xJXCURTdQN8+q9jWSM5cROM42aM0qJQ/mxd/bIdO4MOV18UckghEYGBnoKPBxgiHkX DIfspRjeIVFLoynvj7AI0zjUO8MqPHXyX7WhXn3ezl/HTmQ6G4/tArc4DYzQP8lgdkP3 lOPBvRLA9wnDnTswZw1nbFDblvCVLM2vthrPxMfk4X1sIGj3yKC9le4tcaew2CHZVfar 4osw== X-Received: by 10.50.135.100 with SMTP id pr4mr195816igb.37.1362771992040; Fri, 08 Mar 2013 11:46:32 -0800 (PST) Received: from seurat.1015granger.net ([99.26.161.222]) by mx.google.com with ESMTPS id wx2sm389367igb.4.2013.03.08.11.46.31 (version=TLSv1 cipher=RC4-SHA bits=128/128); Fri, 08 Mar 2013 11:46:31 -0800 (PST) From: Chuck Lever Subject: [PATCH 03/11] gssd: Use italics for option values and pathnames To: linux-nfs@vger.kernel.org Cc: Chuck Lever Date: Fri, 08 Mar 2013 14:46:30 -0500 Message-ID: <20130308194630.5656.81032.stgit@seurat.1015granger.net> In-Reply-To: <20130308193830.5656.44184.stgit@seurat.1015granger.net> References: <20130308193830.5656.44184.stgit@seurat.1015granger.net> User-Agent: StGIT/0.14.3 MIME-Version: 1.0 Sender: linux-nfs-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-nfs@vger.kernel.org Clean up: The usual convention for the values of command line options and for pathnames is for them to appear italicized, rather than emboldened or in double quotes. Signed-off-by: Chuck Lever --- utils/gssd/gssd.man | 30 +++++++++++++++++++++--------- 1 files changed, 21 insertions(+), 9 deletions(-) -- To unsubscribe from this list: send the line "unsubscribe linux-nfs" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html diff --git a/utils/gssd/gssd.man b/utils/gssd/gssd.man index c74b7e8..0cc7bf4 100644 --- a/utils/gssd/gssd.man +++ b/utils/gssd/gssd.man @@ -6,7 +6,18 @@ .SH NAME rpc.gssd \- rpcsec_gss daemon .SH SYNOPSIS -.B "rpc.gssd [-f] [-n] [-k keytab] [-l] [-p pipefsdir] [-v] [-r] [-d ccachedir]" +.B rpc.gssd +.RB [ \-fnlvr ] +.RB [ \-k +.IR keytab ] +.RB [ \-p +.IR pipefsdir ] +.RB [ \-d +.IR ccachedir ] +.RB [ \-t +.IR timeout ] +.RB [ \-R +.IR realm ] .SH DESCRIPTION The rpcsec_gss protocol gives a means of using the gss-api generic security api to provide security for protocols using rpc (in particular, nfs). Before @@ -38,13 +49,14 @@ manually like all other users. Use of this option means that attempting to mount an nfs filesystem requiring Kerberos authentication. .TP -.B -k keytab +.BI "-k " keytab Tells .B rpc.gssd to use the keys found in .I keytab to obtain "machine credentials". -The default value is "/etc/krb5.keytab". +The default value is +.I /etc/krb5.keytab. .IP Previous versions of .B rpc.gssd @@ -94,17 +106,17 @@ encryption. This option is only available with Kerberos libraries that support setable encryption types. .TP -.B -p path +.BI "-p " path Tells .B rpc.gssd where to look for the rpc_pipefs filesystem. The default value is -"/var/lib/nfs/rpc_pipefs". +.IR /var/lib/nfs/rpc_pipefs . .TP -.B -d directory +.BI "-d " directory Tells .B rpc.gssd where to look for Kerberos credential files. The default value is -"/tmp:/run/user/%U". +.IR /tmp:/run/user/%U . This can also be a colon separated list of directories to be searched for Kerberos credential files. The sequence "%U", if used, is replaced with the UID of the user for whom credentials are being searched. @@ -119,14 +131,14 @@ Increases the verbosity of the output (can be specified multiple times). If the rpcsec_gss library supports setting debug level, increases the verbosity of the output (can be specified multiple times). .TP -.B -R realm +.BI "-R " realm Kerberos tickets from this .I realm will be preferred when scanning available credentials cache files to be used to create a context. By default, the default realm, as configured in the Kerberos configuration file, is preferred. .TP -.B -t timeout +.BI "-t " timeout Timeout, in seconds, for kernel gss contexts. This option allows you to force new kernel contexts to be negotiated after .I timeout