Re: Protecting folder-structure against accidental alteration
- From: "Roger Abell [MVP]" <mvpNoSpam@xxxxxxx>
- Date: Fri, 23 Mar 2007 11:44:10 -0700
Changing permissions has undesirable side-effects such as
making the creation or editing of documents impossible
Not so.
If in the NTFS permissions dialog you click Advanced, and
then you highlight a grant and click edit, then you will see that
there is a dropbox allowing to specify to what the specific
grant applies.
In your case, you would be wanting to distinguish between
grants for This folder and subfolders and for Files only.
If you do not grant delete on folders they will not get deleted,
etc.
Roger
"Ian" <Ian@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:7AE81634-8747-428A-8850-26F623411CDE@xxxxxxxxxxxxxxxx
We have a large data structure containing documents in hierarchical
folders.
They are mainly used by speed-typists who don't always look at the screen
whilst typing, so they are not always aware when something is going
horribly
wrong.
One of the biggest problems is that of folders being accidentally moved or
renamed from within File..Open dialog boxes of applications, when the
user's
actual intention is to find and open a document. As we all know this is
oh-so easy to do - all it takes is a slip of the mouse, or a slightly slow
double-click when opening a folder. As there is no confimation asked,
often
the user isn't even aware it's happened.
By looking at the nature of the damage I'd guess that slow-click is the
main
culprit- the users habitually type the name of a folder to navigate to it
in
the list, BUT if a folder has been unintentionally slow-clicked instead of
double-clicked, then it gets renamed instead.
We need some kind of protective measure, as the the data is suffering
gradual 'entropy' from the accumulation of mouse-slips by people who
aren't
even trying to make changes to it at the time!
I was looking for ways of either turning off move/rename from within
dialog-boxes (especially the slow-click variety of rename) or else of
using
NTFS permissions to stop renaming of the root folders in the structure.
Neither seem to be very feasible, though. Changing permissions has
undesirable side-effects such as making the creation or editing of
documents
impossible, while there seems to be no registry or policy control for the
slow-click action that does most of the damage.
Mostly XP Pro desktops, NT4 server.
Any ideas?
.
- Prev by Date: Re: Security Courses- *SPAM*
- Next by Date: Re: eventlog performance
- Previous by thread: Re: Security Courses- *SPAM*
- Next by thread: Re: Trusting Certs from Non Trusted root
- Index(es):
Relevant Pages
|