From nobody Tue Nov 15 21:31:46 2022 X-Original-To: dev-commits-src-all@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4NBfWk558Lz4hp7G; Tue, 15 Nov 2022 21:31:46 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4NBfWk4dqHz4cy7; Tue, 15 Nov 2022 21:31:46 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1668547906; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=GWfQAeivQ4ta4wmQ3NOaRj5vxDYNyXQFr+4ueWDzqus=; b=wh182uiUw7IAi5C4A7WTraW+DVpKrc7fG+oKDnfi6vOyK72xt/N3H/DlHDXHtXqmoxuGeZ czH0zAuovYKeDZYIQBLmaW3IwGcKulMEW5IbW7THCVi3Bt6zz4dGLpo0rzGMu1WYR/snxu 5k+4Oj+E2J3VRUeGvPFZCS5/58QaLLhpaG5A/gkKB7uqXObZT0Ym1hHjXRmTgsTv/WGP4M 6IWZk/xly3eRyxh0ojAeEg1lR91yXKM3DtSxaopEKpjSYqatHf3GPBewTfC9EPyFEdAPVs 3xg3ocs9ni1G48g4Zf23wXAGy7KtyPhg9dC1Uy5zl79G9MM4EhTvzyixOC1a5Q== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1668547906; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=GWfQAeivQ4ta4wmQ3NOaRj5vxDYNyXQFr+4ueWDzqus=; b=vpZbXbJo2FNeW4k7BDJe2/Abs9Q3UJmaGbOyc/wpIolhqFY+k9DBJStKJnLn+YWGNqy2hn 69QtHad29WuyJYzYr66mLq/bbwbUJJqvcgT7oCKtKtYUOBE4bdPA9l4WCYlFr4Rny/6eIF dIwpY8TMU4vUXRWtbCNH2a7KYpQh2xOyz5I+CbGlZx1E8IM5JjbN/f8iPVQM/sFFvqPqvW W27lns+DPBuE4gvuJMYJzRwqpZQW/x3AKJVWhWaT/AeW/EyUy6lWOkhh1R5y3QJHV1i/w0 40SwMunNJRnFffleQ5zwveqEzaEbrijw6Mj2OuYRH5AoAukJJP/ECQ/RPnNHmQ== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1668547906; a=rsa-sha256; cv=none; b=ek4c2OPf/i1FnfEKea7ytq8dL+QVePZBUL5iDgTJ1dp40h4e6qIsbA3kE7xPSJakQnCZd+ F3SwKW9ulzGDKOEhfyosGBGLhGep7NmX6PD8+KYvTSY3PQwbaqNusMaQVu1RsDPGRQUOk0 pM+mW0T6n/oaXQ3yydujkg/GbZIUQYzZeoPi+WdKTkLCAAXLJDA8iLNaEDmHkl/fjI4pMD ARhqDxjuQ0H9PALvyNW8Ut9GIhv2C+hNFDD5lelCZ74oBYT5LxGpL+3YjaYfyipNdNm9hz TyMKXz+pEvrRhVRQAP7zYcKGtRrEUHBPKnujASUVMLbnw6WxD6J5aRSGvkEoAw== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4NBfWk3jFhzcbJ; Tue, 15 Nov 2022 21:31:46 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.16.1/8.16.1) with ESMTP id 2AFLVkEU054766; Tue, 15 Nov 2022 21:31:46 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.16.1/8.16.1/Submit) id 2AFLVk4p054765; Tue, 15 Nov 2022 21:31:46 GMT (envelope-from git) Date: Tue, 15 Nov 2022 21:31:46 GMT Message-Id: <202211152131.2AFLVk4p054765@gitrepo.freebsd.org> To: src-committers@FreeBSD.org, dev-commits-src-all@FreeBSD.org, dev-commits-src-main@FreeBSD.org From: Rick Macklem Subject: git: e471259313c2 - main - rpc.tlsservd.8: Update man page for new -N/--numdaemons option List-Id: Commit messages for all branches of the src repository List-Archive: https://lists.freebsd.org/archives/dev-commits-src-all List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-dev-commits-src-all@freebsd.org X-BeenThere: dev-commits-src-all@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: rmacklem X-Git-Repository: src X-Git-Refname: refs/heads/main X-Git-Reftype: branch X-Git-Commit: e471259313c25b9b386299b288023135bc298cd4 Auto-Submitted: auto-generated X-ThisMailContainsUnwantedMimeParts: N The branch main has been updated by rmacklem: URL: https://cgit.FreeBSD.org/src/commit/?id=e471259313c25b9b386299b288023135bc298cd4 commit e471259313c25b9b386299b288023135bc298cd4 Author: Rick Macklem AuthorDate: 2022-11-15 21:30:41 +0000 Commit: Rick Macklem CommitDate: 2022-11-15 21:30:41 +0000 rpc.tlsservd.8: Update man page for new -N/--numdaemons option Commit 1e588a9ceb36 added a new command line option -N/numdaemons that specifies how many daemons to run. This allows a server to be configured with more than one rpc.tlsservd daemon, which may be necessary to handle a reboot for an NFS server with many NFS-over-TLS client mounts. This patch updates the man page for this commit. This is a content change. Reviewed by: karels, pauamma (man pages) Differential Revision: https://reviews.freebsd.org/D37382 --- usr.sbin/rpc.tlsservd/rpc.tlsservd.8 | 13 ++++++++++++- 1 file changed, 12 insertions(+), 1 deletion(-) diff --git a/usr.sbin/rpc.tlsservd/rpc.tlsservd.8 b/usr.sbin/rpc.tlsservd/rpc.tlsservd.8 index 9b15a1d59812..95082d445d45 100644 --- a/usr.sbin/rpc.tlsservd/rpc.tlsservd.8 +++ b/usr.sbin/rpc.tlsservd/rpc.tlsservd.8 @@ -26,7 +26,7 @@ .\" $FreeBSD$ .\" .\" Modified from gssd.8 for rpc.tlsservd.8 by Rick Macklem. -.Dd September 23, 2022 +.Dd November 10, 2022 .Dt RPC.TLSSERVD 8 .Os .Sh NAME @@ -41,6 +41,7 @@ .Op Fl h .Op Fl l Ar CAfile .Op Fl m +.Op Fl N Ar num_servers .Op Fl n Ar domain .Op Fl p Ar CApath .Op Fl r Ar CRLfile @@ -237,6 +238,16 @@ may be used to require a client to provide a certificate that verifies. See .Xr exports 5 . +.It Fl N Ar num_servers , Fl Fl numdaemons= Ns Ar num_servers +For a server with a large number of NFS-over-TLS client mounts, +this daemon might get overloaded after a reboot, when many +clients attempt to do a TLS handshake at the same time. +This option may be used to specify that +.Dq num_servers +daemons are to be run instead of a single daemon. +When this is done, the TLS handshakes are spread across the +.Dq num_servers +daemons in a round robin fashion to spread out the load. .It Fl n Ar domain , Fl Fl domain= Ns Ar domain This option specifies what the .Dq domain