Is TLS supported for NFS protocol
Applies to
- ONTAP 9
- Transport Layer Security (TLS)
- NFS
Answer
- No, ONTAP does not support TLS for NFS
- ONTAP supports encryption of HTTPS, FTPS, and LDAP over SSL (LDAPS) with TLS
Note:
If the vserver nfs tls interface enable command is executed to forcibly enable NFS over TLS, the following error is returned:
Error: command failed: Cannot enable NFS over TLS because it is not supported on this platform.
This error indicates that NFS over TLS is not supported on the current platform
Additional Information
- To encrypt ongoing transactions with NFS krb5p or IPsec are the only choices, however, it should be discussed with the account team due to performance degradation.
- Overview of using Kerberos with NFS for strong security
- NFS Kerberos in ONTAP
- Prepare to use IP security on the ONTAP network
