Offtopic: I found Kerberos for NFSv4 transport encryption weird and hooked Wireguard below instead. No idea though if this is actually secure, but good enough for a local network I suppose. Should create some automatization/helper tools for provisioning/configuring it though. Also curious about setting up jumbo frames in the future.
Really good timing for this article. Thank you so much! I plan to start work on setting up centralized auth for all of HardenedBSD’s infrastructure within the next week or two.
Nice howto! I’m slightly surprised to learn that Windows has an NFS client implementation.