1  /* SPDX-License-Identifier: GPL-2.0 WITH Linux-syscall-note */
2  /*
3   * include/linux/nfsd/export.h
4   *
5   * Public declarations for NFS exports. The definitions for the
6   * syscall interface are in nfsctl.h
7   *
8   * Copyright (C) 1995-1997 Olaf Kirch <okir@monad.swb.de>
9   */
10  
11  #ifndef _UAPINFSD_EXPORT_H
12  #define _UAPINFSD_EXPORT_H
13  
14  # include <linux/types.h>
15  
16  /*
17   * Important limits for the exports stuff.
18   */
19  #define NFSCLNT_IDMAX		1024
20  #define NFSCLNT_ADDRMAX		16
21  #define NFSCLNT_KEYMAX		32
22  
23  /*
24   * Export flags.
25   *
26   * Please update the expflags[] array in fs/nfsd/export.c when adding
27   * a new flag.
28   */
29  #define NFSEXP_READONLY		0x0001
30  #define NFSEXP_INSECURE_PORT	0x0002
31  #define NFSEXP_ROOTSQUASH	0x0004
32  #define NFSEXP_ALLSQUASH	0x0008
33  #define NFSEXP_ASYNC		0x0010
34  #define NFSEXP_GATHERED_WRITES	0x0020
35  #define NFSEXP_NOREADDIRPLUS    0x0040
36  #define NFSEXP_SECURITY_LABEL	0x0080
37  /* 0x100 currently unused */
38  #define NFSEXP_NOHIDE		0x0200
39  #define NFSEXP_NOSUBTREECHECK	0x0400
40  #define	NFSEXP_NOAUTHNLM	0x0800		/* Don't authenticate NLM requests - just trust */
41  #define NFSEXP_MSNFS		0x1000	/* do silly things that MS clients expect; no longer supported */
42  #define NFSEXP_FSID		0x2000
43  #define	NFSEXP_CROSSMOUNT	0x4000
44  #define	NFSEXP_NOACL		0x8000	/* reserved for possible ACL related use */
45  /*
46   * The NFSEXP_V4ROOT flag causes the kernel to give access only to NFSv4
47   * clients, and only to the single directory that is the root of the
48   * export; further lookup and readdir operations are treated as if every
49   * subdirectory was a mountpoint, and ignored if they are not themselves
50   * exported.  This is used by nfsd and mountd to construct the NFSv4
51   * pseudofilesystem, which provides access only to paths leading to each
52   * exported filesystem.
53   */
54  #define	NFSEXP_V4ROOT		0x10000
55  #define NFSEXP_PNFS		0x20000
56  
57  /* All flags that we claim to support.  (Note we don't support NOACL.) */
58  #define NFSEXP_ALLFLAGS		0x3FEFF
59  
60  /* The flags that may vary depending on security flavor: */
61  #define NFSEXP_SECINFO_FLAGS	(NFSEXP_READONLY | NFSEXP_ROOTSQUASH \
62  					| NFSEXP_ALLSQUASH \
63  					| NFSEXP_INSECURE_PORT)
64  
65  /*
66   * Transport layer security policies that are permitted to access
67   * an export
68   */
69  #define NFSEXP_XPRTSEC_NONE	0x0001
70  #define NFSEXP_XPRTSEC_TLS	0x0002
71  #define NFSEXP_XPRTSEC_MTLS	0x0004
72  
73  #define NFSEXP_XPRTSEC_NUM	(3)
74  
75  #define NFSEXP_XPRTSEC_ALL	(NFSEXP_XPRTSEC_NONE | \
76  				 NFSEXP_XPRTSEC_TLS | \
77  				 NFSEXP_XPRTSEC_MTLS)
78  
79  #endif /* _UAPINFSD_EXPORT_H */
80