Security Basics mailing list archives
Re: Windows Sharing File Permissions
From: Raoul Armfield <armfield () amnh org>
Date: Tue, 18 Dec 2007 15:07:30 -0500
Nikhil Wagholikar wrote, On 12/11/2007 3:37 PM:
The best practice is generally to provide Full Control to Authenticated Users as Share permission and then provide granular/restrictive permission to individuals or groups using NTFS permission.
I disagree, I believe that even here no more access should be granted than needed. I grant all my users Modify permissions on the share and only give full control to the admins. The main difference is that having full control the user is also able to control who has access to the share and no one other than the admin team needs to have this ability.
-- Raoul Armfield rarmfield at amnh dot org
Current thread:
- Windows Sharing File Permissions Al Cooper (Dec 11)
- RE: Windows Sharing File Permissions wharfratjoe (Dec 12)
- Re: Windows Sharing File Permissions Nikhil Wagholikar (Dec 12)
- Re: Windows Sharing File Permissions Raoul Armfield (Dec 18)
- RE: Windows Sharing File Permissions Nick Vaernhoej (Dec 12)
- RE: Windows Sharing File Permissions Jesse Eaton (Dec 12)
- Re: Windows Sharing File Permissions Micheal Espinola Jr (Dec 12)
- RE: Windows Sharing File Permissions Marc Ouwerkerk (Dec 12)
- RE: Windows Sharing File Permissions Bill Lavalette (Dec 12)
- Re: Windows Sharing File Permissions Jason Ross (Dec 12)
- RE: Windows Sharing File Permissions Ackley, Alex (Dec 12)
- RE: Windows Sharing File Permissions Scalcione.David (Dec 12)
- <Possible follow-ups>
- Re: Windows Sharing File Permissions jean . debogue (Dec 12)