[Samba] samba acl - able to change permissions that contradict user security setting

suresh.kandukuru at emc.com suresh.kandukuru at emc.com
Wed Sep 8 09:14:40 MDT 2010


Thanks smith for the quick reply. what I want to know is ,can not samba source code  prevent the changing setting rw access to "test_subfolder" user1 , since he has only read only access on  the share "test".


-Suresh

-----Original Message-----
From: samba-bounces at lists.samba.org [mailto:samba-bounces at lists.samba.org] On Behalf Of Chris Smith
Sent: Wednesday, September 08, 2010 8:25 PM
To: Kandukuru, Suresh
Cc: samba at lists.samba.org
Subject: Re: [Samba] samba acl - able to change permissions that contradict user security setting

On Wed, Sep 8, 2010 at 1:43 AM,  <suresh.kandukuru at emc.com> wrote:
> 1) created share "test" given read and write access to the user "admin" and read only access to user "user1".
>
> 2) from my windows PC logged into the samba share  "test " with "admin"  user . created subfolder in that "test_subfolder".
>
> 3) on that subfolder  , from the windows security tab I could add user "user1" and can give read and write access to  that.
> How to prevent this ??. Actually on the share "test" user1 has read only access .How samba code is allowing to change permissions that contradict user security settings.
>
> 4) when I login to share "test" with "user1" , I cannot write into subfolder "test_subfolder"

Seems perfectly normal. Share level security will take precedence over
file level security when connected via the share. I'm sure you would
find the same results working with an actual Windows share (always a
good thing to test before you post).
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


More information about the samba mailing list