NFS Exports

Overview

Evidence: NFS Exports Description: Collect NFS exports Category: DiskFilesystem Platform: linux Short Name: nfsexpr Is Parsed: Yes Sent to Investigation Hub: Yes Collect File(s): No

Background

This collector gathers NFS exports information from the Linux system. This data is essential for understanding network file sharing configuration, detecting unauthorized shares, and investigating data exposure risks.

Data Collected

This collector gathers structured data about nfs exports.

Collection Method

This collector parses NFS export configuration and records entries into the nfs_exports tables.

Forensic Value

This evidence is crucial for forensic investigations as it provides network file share visibility. It helps investigators identify exposed paths, client permissions, and misconfigurations that could lead to data leakage.

Last updated

Was this helpful?