[Samba] Some questions about sharing and permission.

Jason Long hack3rcon at yahoo.com
Fri May 14 12:27:18 UTC 2021


Hello,
According to "https://wiki.samba.org/index.php/Setting_up_a_Share_Using_Windows_ACLs#Adding_a_Share" tutorial, I added a directory and set a permission for it as below:

# mkdir -p /home/share/
# chown root:"login2" share/
# chmod 0770 share/
# chcon -t samba_share_t /home/share/

Then, added below lines into "/usr/local/samba/etc/smb.conf" file:

[Share]
path = /home/share
writable = yes
browsable = yes
acl_xattr:ignore system acl = yes


My users and groups are:

# wbinfo -u
MYDOMAIN\administrator
MYDOMAIN\guest
MYDOMAIN\krbtgt
MYDOMAIN\user1
MYDOMAIN\user2
MYDOMAIN\user3
MYDOMAIN\user4
MYDOMAIN\user5
#
# wbinfo -g
MYDOMAIN\cert publishers
MYDOMAIN\ras and ias servers
MYDOMAIN\allowed rodc password replication group
MYDOMAIN\denied rodc password replication group
MYDOMAIN\dnsadmins
MYDOMAIN\enterprise read-only domain controllers
MYDOMAIN\domain admins
MYDOMAIN\domain users
MYDOMAIN\domain guests
MYDOMAIN\domain computers
MYDOMAIN\domain controllers
MYDOMAIN\schema admins
MYDOMAIN\enterprise admins
MYDOMAIN\group policy creator owners
MYDOMAIN\read-only domain controllers
MYDOMAIN\dnsupdateproxy
MYDOMAIN\login2


The members of "login2" groups can read and write "share" directory, but other can't. If I want other groups or users have read permission, but not write permission, then what should I do?


Thank you.




More information about the samba mailing list