I don't allow users to log in interactively to the linux box. Is there a way that samba can 'audit' file accesses? We're concerned about tracking down possible 'unauthorized' erasures of files. Can samba syslog file erase transactions? David Bear College of Public Programs/ASU A word is just two nibbles and a byte...