ACLs

  • Standard UNIX perms
sudo chmod 700 /mypool/mydataset
sudo chown user:group /mypool/mydataset

ACLs

# for "username"
sudo setfacl -m u:username:rwx /mypool/mydataset

Delegation

  • Specific perms delegated to non-privileged users
    • Create snapshots/mount datasets
# for "user"
sudo zfs allow user create,snapshot mypool/mydataset
# view perms
sudo zfs allow mypool/mydataset
# remove perms for "user"
sudo zfs unallow user create,snapshot mypool/mydataset