<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: What is the way to configure Netapp so that only authorized hosts can access. in Network and Storage Protocols</title>
    <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/What-is-the-way-to-configure-Netapp-so-that-only-authorized-hosts-can-access/m-p/163252#M9504</link>
    <description>&lt;P&gt;Look for client permission for Export.,&lt;/P&gt;</description>
    <pubDate>Sat, 23 Jan 2021 18:04:38 GMT</pubDate>
    <dc:creator>jcolonfzenpr</dc:creator>
    <dc:date>2021-01-23T18:04:38Z</dc:date>
    <item>
      <title>What is the way to configure Netapp so that only authorized hosts can access.</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/What-is-the-way-to-configure-Netapp-so-that-only-authorized-hosts-can-access/m-p/163040#M9501</link>
      <description>&lt;P&gt;I have Netapp version 8.2.2.&amp;nbsp; &amp;nbsp;I have the following security violation on it after scanned with security tool.&lt;/P&gt;&lt;P&gt;It said that the solution is to "configure NFS on the remote host so that only authorized hosts can mount its remote shares".&lt;/P&gt;&lt;P&gt;There are 12 servers, which are in a cluster, and additional 5 servers access and share the file system.&amp;nbsp; &amp;nbsp;What is the way to build the access list so that only these 17 servers can access the Netapp?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;========================================================================================&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Synopsis :&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;It is possible to access NFS shares on the remote host.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Description :&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;At least one of the NFS shares exported by the remote server could be&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;mounted by the scanning host. An attacker may be able to leverage&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;this to read (and possibly write) files on remote host.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The following NFS shares could be mounted :&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;+ /vol/LUN_RDM011_vol&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;+ Contents of /vol/LUN_RDM011_vol :&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- .&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- ..&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- .snapshot&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- LUN_RDM11&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;+ /vol/LUN_RDM012_vol&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;+ Contents of /vol/LUN_RDM012_vol :&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- .&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- ..&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- .snapshot&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- LUN_RDM12&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;+ /vol/LUN_RDM21_vol&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;+ Contents of /vol/LUN_RDM21_vol :&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- .&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- ..&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- .snapshot&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- LUN_RDM21&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;+ /vol/LUN_RDM22_vol&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;+ Contents of /vol/LUN_RDM22_vol :&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- .&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- ..&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- .snapshot&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- LUN_RDM22&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;+ /vol/LUN_RDM41_vol&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;+ Contents of /vol/LUN_RDM41_vol :&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- .&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- ..&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- .snapshot&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- LUN_RDM41&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;+ /vol/LUN_RDM51_vol&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;+ Contents of /vol/LUN_RDM51_vol :&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;....&lt;/P&gt;&lt;P&gt;....&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;SPAN&gt;Solution :&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Configure NFS on the remote host so that only authorized hosts can&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;mount its remote shares.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Jun 2025 10:38:19 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/What-is-the-way-to-configure-Netapp-so-that-only-authorized-hosts-can-access/m-p/163040#M9501</guid>
      <dc:creator>novice</dc:creator>
      <dc:date>2025-06-04T10:38:19Z</dc:date>
    </item>
    <item>
      <title>Re: What is the way to configure Netapp so that only authorized hosts can access.</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/What-is-the-way-to-configure-Netapp-so-that-only-authorized-hosts-can-access/m-p/163049#M9502</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I believe you have an export policy specifying 0.0.0.0/0 as the client specification. In that way, all the networks are allowed to access the exports for volumes with the export policy.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So you should create more restrictive export policies specifying the client IPs.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This documentation may help you:&amp;nbsp;&lt;A href="https://library.netapp.com/ecm/ecm_download_file/ECMP1331695" target="_blank" rel="noopener"&gt;https://library.netapp.com/ecm/ecm_download_file/ECMP1331695&lt;/A&gt;&lt;/P&gt;&lt;P&gt;(Creating an export policy in System Manager).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Pedro&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 19:02:17 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/What-is-the-way-to-configure-Netapp-so-that-only-authorized-hosts-can-access/m-p/163049#M9502</guid>
      <dc:creator>pedro_rocha</dc:creator>
      <dc:date>2021-01-19T19:02:17Z</dc:date>
    </item>
    <item>
      <title>Re: What is the way to configure Netapp so that only authorized hosts can access.</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/What-is-the-way-to-configure-Netapp-so-that-only-authorized-hosts-can-access/m-p/163228#M9503</link>
      <description>&lt;P&gt;Thank you for your reply.&amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;P&gt;On my Netapp Ondemand System manager Version: 3.1, I don't see an export policy on the left tree.&amp;nbsp; &amp;nbsp;My Netapp is version 8.2.2.&amp;nbsp; &amp;nbsp;If I (or can I upgrade the system manager only without Netapp upgrade?) upgrade the System Manager, will there be export policy menu on the left tree?&amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 22 Jan 2021 19:25:11 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/What-is-the-way-to-configure-Netapp-so-that-only-authorized-hosts-can-access/m-p/163228#M9503</guid>
      <dc:creator>novice</dc:creator>
      <dc:date>2021-01-22T19:25:11Z</dc:date>
    </item>
    <item>
      <title>Re: What is the way to configure Netapp so that only authorized hosts can access.</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/What-is-the-way-to-configure-Netapp-so-that-only-authorized-hosts-can-access/m-p/163252#M9504</link>
      <description>&lt;P&gt;Look for client permission for Export.,&lt;/P&gt;</description>
      <pubDate>Sat, 23 Jan 2021 18:04:38 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/What-is-the-way-to-configure-Netapp-so-that-only-authorized-hosts-can-access/m-p/163252#M9504</guid>
      <dc:creator>jcolonfzenpr</dc:creator>
      <dc:date>2021-01-23T18:04:38Z</dc:date>
    </item>
  </channel>
</rss>

