Show Table of Contents
22.214.171.124. Do Not Use the no_root_squash Option
By default, NFS shares change the root user to the
nfsnobodyuser, an unprivileged user account. This changes the owner of all root-created files to
nfsnobody, which prevents uploading of programs with the setuid bit set.
no_root_squashis used, remote root users are able to change any file on the shared file system and leave applications infected by Trojans for other users to inadvertently execute.