Re: NTFS Add & Read Directory Permissions

From: Ken Hagan (K.Hagan@thermoteknix.co.uk)
Date: 01/24/02


From: "Ken Hagan" <K.Hagan@thermoteknix.co.uk>
Date: Thu, 24 Jan 2002 10:53:08 -0000


"Erwin Richard" <erwin@richard.net> wrote...

> I understand that I can change the Directory to "Add & Read"
> permissions but then the owner of the newly created file can
> still modify its permissions(?).

Yes, because the owner of a file can always change the permissions,
no matter what the ACL says.

> Alternatives I am thinking about:
>
> a Change the Ownership of the file programmatically from the
> application if possible(?)

You can't (easily) give away ownership, so this won't work.

> b Write a service on the Server that gets notified as soon as a
> new file is placed in the directory and changes its
> permissions/owner

This can be made to work, since the service can run under a
different account from whatever created the files, and will
be able to take ownership (if it is sufficiently priviledged).



Relevant Pages

  • Re: ntfs file permissions, ownership
    ... >> ownership (or do it by taking ownership, ... if an administrator account does not have change permissions access to ... being the "owner" of the computer itself. ...
    (microsoft.public.windows.server.scripting)
  • Re: Adding XP in another partition users into Vi$ta
    ... "The Owner tab shown in Figure 12.19 has no option for giving ownership to ... When logged in as a standard user, when you elevate you are logging in ... only be considered for deny permissions. ...
    (microsoft.public.windows.vista.security)
  • Re: Lets talk about ownership!
    ... They will have the same permissions but the permissions are meaningless as there is no user to match. ... According my previous example the user "Terry" has read/write permissions on folder NickData. ... Ownership doesn't really matter as long as you have permissions. ... XP can be configured in Local Security Policy to make the Admin group the owner for files created by admins. ...
    (microsoft.public.windowsxp.general)
  • Re: Cannot delete file - Unable to remove permissions
    ... As a local administrator you can take ownership. ... The file has NTFS permissions inherited and I am unable to modify/ ... does not have an owner.. ...
    (microsoft.public.windows.file_system)
  • Re: Object permissions
    ... Who is the owner of the query? ... permissions does the owner have on the underlying tables? ... does the user have on the query; ... to 'owners' in the sql statement each time the code runs, ...
    (microsoft.public.access.security)