When setting a non-default ACL, don't forget to apply masks to SMB_ACL_USER and SMB_ACL_GROUP entries.

Andrew Bartlett abartlet at samba.org
Fri Oct 5 02:01:08 MDT 2012


On Tue, 2012-10-02 at 22:28 +0200, Jeremy Allison wrote:
> commit 6575d1d34fee45c7a965c7c9641cc52b566a9e7f
> Author: Jeremy Allison <jra at samba.org>
> Date:   Tue Oct 2 10:15:54 2012 -0700
> 
>     When setting a non-default ACL, don't forget to apply masks to
> SMB_ACL_USER and SMB_ACL_GROUP entries.

Jeremy,

With this change, does this mean we have changed the mapping between
posix ACLs and NT ACLs?

If so, I'm concerned that any NT ACLs that have been set with
vfs_acl_xattr will be invalidated, as the hash won't match up.  

Andrew Bartlett
-- 
Andrew Bartlett                                http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org




More information about the samba-technical mailing list