Services That Do Not Require LUM-Enabled Access But Have Some LUM
Requirements
Some services do not require eDirectory users to be LUM-enabled for service access:
NetStorage: NetStorage users don't generally need to be LUM-enabled. However, salvaging
and purging files through NetStorage on an NSS volume can only be done by users who are
enabled for Linux.
IMPORTANT: Files that are uploaded by non-LUM users via NetStorage are owned, from a
POSIX perspective, by the
on NSS or NCP
Trustee Model applies and POSIX ownership is irrelevant.
If non-LUM NetStorage users are later enabled for Samba access (which includes LUM-
enabling) and begin using Samba as a file service, their NetStorage uploaded files are not
accessible through Samba until you change POSIX file ownership. Although the Novell
implementation of Samba leverages eDirectory for authentication, Samba file and directory
access is always controlled by POSIX. The Novell Trustee Model doesn't apply to Samba.
Both Novell trustee assignments and POSIX file ownership are tracked correctly after users are
LUM-enabled.
Although NetStorage doesn't require LUM-enabled access, the service itself runs as a POSIX-
compliant system User (initially a local user on the OES 2 server) who functions on behalf of
the end users that are accessing the service.
If NetStorage must access NSS volumes, this local system user must be moved to eDirectory
and LUM-enabled because only eDirectory users can access NSS volumes. The OES 2
installation program configures this correctly by default.
For more information, see
on page
NSS: eDirectory users that access NSS volumes directly through NCP (the Novell Client
not required to be LUM-enabled.
However, because Novell Samba accesses NSS through the virtual file system layer that makes
NSS appear to be a POSIX-compliant file system, Samba users must be LUM–enabled to
access an NSS volume.
Services That Do Not Require LUM-enabled Access
The following end user services do not require LUM-enabled access:
iFolder 3.8
iPrint
NCP Client to an NCP Volume
NCP Client to an NSS Volume
Novell AFP
Novell CIFS
QuickFinder
154 OES 2 SP2: Planning and Implementation Guide
user. The assumption is that such users are accessing their data
root
volumes by using an NCP storage location object. In both cases, the Novell
TM
Appendix I, "System User and Group Management in OES 2 SP2,"
257.
TM
) are
TM
Need help?
Do you have a question about the OPEN ENTERPRISE SERVER 2 SP2 - PLANING AND IMPLEMENTATION GUIDE 11-10-2009 and is the answer not in the manual?
Questions and answers