Skip to main content

vserver nfs tls interface enable

Contributors
Suggest changes

Enable NFS TLS on a LIF

Availability: This command is available to cluster and Vserver administrators at the admin privilege level.

Description

The vserver nfs tls interface enable command enables NFS TLS on a logical interface.

Parameters

-vserver <vserver name> - Vserver

This parameter specifies the Vserver in which the logical interface exists.

-lif <lif-name> - Logical Interface

This parameter specifies the name of the logical interface on which you want to enable NFS TLS.

[-certificate-name <text>] - TLS Certificate Name

This parameter specifies the name of a certificate to be associated with the instance of a given Vserver and logical interface.

Note The use of self-signed SSL certificates exposes users to man-in-the-middle security attacks. Where possible, obtain a certificate that is signed by a reputable certificate authority (CA) and use the security certificate install command to configure it before enabling TLS on a Vserver and LIF.

Examples

The following example enables NFS TLS on a Vserver named vs0 and a logical interface named datalif1. The certificate name is lif1.com which is preinstalled on server.

vs1::> vserver nfs tls interface enable -vserver vs0 -lif datalif1 -certificate-name lif1.com