[Samba] Why did samba4 remove "force security mode" and "force directory security"?
Sketch
smblist at rednsx.org
Mon May 16 15:53:20 UTC 2016
On Mon, 16 May 2016, Sense Zeng wrote:
> Thanks for reply. But I think "force security mode" and "force directory
> security" are very very helpful. It's not necessary to remove them. Maybe
> just a warning to the users remain that these parameters cost the acl
> problem, they should use them carefully.
You can still use "force create mode" and "force directory mode" to set
the initial permissions, even though you can't prevent users from removing
those permissions later. I still use this on a setup that is solely using
unix permissions to force SGID permissions on directories (and g+rw on
files), I presume you are doing something similar.
I guess the Samba team wants you to use Windows ACLs for advanced
permissions management.
More information about the samba
mailing list