[Samba] NT vs W2K permission

Norman Zhang nzhang at arkon-group.com
Thu Mar 20 19:58:50 GMT 2003


Hi,

I have a group of users (Doc Master Index) that is given rwx permission to a
subfolder under a share folder (docs) by ACL. If user edits the file in NT
the permission remains intact, but if user changes the file in W2K, everyone
gets read-only. Would someone give me a couple of pointers please? A subset
of my conf is appended below.

Regards,
Norman

[root at smbserver Document Master Index]# ls -l /srv/doccon
drwxrws---    4 doccon   Doc Writers       30 Dec 21 16:54 Document Master
Index/

[root at smbserver Document Master Index]# ls -l /srv/doccon/Document\ Master\
Index/Current/
drwxrws---    2 doccon   Doc Writers       24 Mar 20 11:21 Elec/

[root at smbserver Document Master Index]# getfacl /srv/doccon/
getfacl: Removing leading '/' from absolute path names
# file: srv/doccon
# owner: doccon
# group: Doc Writers
user::rwx
group::rwx
group:Domain Users:r-x
group:Doc Readers:r-x
group:Bak Admins:rwx
mask::rwx
other::---
default:user::rwx
default:group::rwx
default:group:Doc Readers:r-x
default:group:Bak Admins:rwx
default:mask::rwx
default:other::---

[root at smbserver Document Master Index]# getfacl /srv/doccon/Document\
Master\ Index/Current/
getfacl: Removing leading '/' from absolute path names
# file: srv/doccon/Document Master Index/Current
# owner: doccon
# group: Doc Writers
user::rwx
group::rwx
group:Domain Users:r-x
group:Doc Master Index:rwx
group:Doc Readers:r-x
group:Bak Admins:rwx
mask::rwx
other::---
default:user::rwx
default:group::rwx
default:group:Domain Users:r-x
default:group:Doc Master Index:rwx
default:group:Doc Readers:r-x
default:group:Bak Admins:rwx
default:mask::rwx
default:other::---

[global]
 workgroup = MYDOMAIN
 netbios name = SMBSERVER
 server string = Samba Server %v
 security = DOMAIN
 encrypt passwords = Yes
 obey pam restrictions = Yes
 password server = *
 log file = /var/log/samba/log.%m
 max log size = 50
 socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
 load printers = No
 printcap name = cups
 show add printer wizard = No
 preferred master = No
 local master = No
 domain master = No
 dns proxy = No
 winbind uid = 10000-20000
 winbind gid = 10000-20000
 winbind use default domain = Yes
 printing = cups
 dos filetimes = Yes


[docs]
 comment = Document Control
 path = /srv/doccon
 write list = root, MYDOMAIN\doccon
 read only = No
 create mask = 0660
 force create mode = 0660
 directory mask = 0750
 hide unreadable = Yes



More information about the samba mailing list