[Samba] Samba + ACL cosmetic improvement?

Tom Dickson tdickson at inostor.com
Mon Jul 12 20:18:21 GMT 2004


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

My users are complaining that to remove "Everyone" permissions from a
folder's ACL they have to "Deny" all permissions. This causes a Windows
warning to appear: "You have denied everyone access to New Folder. No
one will be able to access New Folder and only the owner will be bale to
change the permissions. Do you wish to continue?"

This is confusing, because world permissions of --- will NOT prevent
other groups assigned either as the default group or in the POSIX ACL
from working.

What I'd like to see is the following improvements. If the "Everyone"
group is removed by the Windows security editor, Samba sets world
permissions to "---". If the Everyone group is added, then Samba
modifies world permissions accordingly. And if the world or default
group permissions are "---", Samba does not display them in the Windows
~   ACL dialog.

Are there any objections why this wouldn't work? I'm tired of explaining
that the deny button really isn't denying everybody, and why the "Domain
Users" group cannot be removed, etc.

(using 2.4.26 bestbits XFS+ACL, Samba 3.0.2a)

- -Tom
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFA8vIN2dxAfYNwANIRAjfoAJ9MtA9WfArfNTbvIZxEKY3OilQbvQCfTBA4
4ey0vJSnA7MF6DBFr5zwU4A=
=NayI
-----END PGP SIGNATURE-----


More information about the samba mailing list