[Samba] Why did samba4 remove "force security mode" and "force directory security"?

Sketch smblist at rednsx.org
Mon May 16 15:53:20 UTC 2016

On Mon, 16 May 2016, Sense Zeng wrote:

> Thanks for reply. But I think "force security mode" and "force directory
> security" are very very helpful. It's not necessary to remove them. Maybe
> just a warning to the users remain that these parameters cost the acl
> problem, they should use them carefully.

You can still use "force create mode" and "force directory mode" to set 
the initial permissions, even though you can't prevent users from removing 
those permissions later.  I still use this on a setup that is solely using 
unix permissions to force SGID permissions on directories (and g+rw on 
files), I presume you are doing something similar.

I guess the Samba team wants you to use Windows ACLs for advanced 
permissions management.

More information about the samba mailing list