Explanation
To create a Kerberos secured NFS v4.1 file share, the administrator needs to provide the following information during the configuration of the File Service:
Active Directory Domain: The domain name of the Active Directory server that provides Kerberos authentication service for the NFS server and clients. For example, example.com.
User Account: The user name of the Active Directory account that has permissions to join the NFS server to the domain and create service principal names (SPNs) for the NFS server. For example,
[email protected].
Password: The password of the Active Directory account that is used for authentication. For example, P@ssw0rd.
These information are required to enable Kerberos security for NFS 4.1 and allow the NFS server to obtain a Kerberos ticket from the Active Directory server. The administrator also needs to specify the NFS share name, path, and access permissions1 References: 1: VMware vSphere Storage Guide, page 118