Re: File Server rights
- From: "Steven L Umbach" <n9rou@xxxxxxxxxxxxxxxxxxxxxxxxxx>
- Date: Wed, 7 Jun 2006 15:51:18 -0500
In Windows 2000/2003 a user can see the contents of a share even if they do
not have read access to the contents. However if permissions have been
configured correctly as I believe you have they should not be able to access
the contents of a folder/file that they have no permissions to and should
get an accessed denied message. I know this is unlike Novell but that is the
way it is in Windows since they have and need list permissions to the
department folder. When using Windows 2003 Microsoft has provided a utility
call Access Based Enumeration that can help hide folders in a share that a
user does not have read permissions to. That of course does not help those
using Windows 2000 Server but at least MS has reacted to the many complaints
about this issue. See the info in the link below if that interests
u. --- Steve
http://www.microsoft.com/windowsserver2003/techinfo/overview/abe.mspx
"SEgerton" <SEgerton@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:0A2ACD82-08D3-4520-8865-697098A9B8A6@xxxxxxxxxxxxxxxx
I have an issues. I'm new to Active Directory, coming from a Netware
background.
First, I have one file server that is connected to the new domain. I
haven't
ran the file server fole utility. Don't think i have to.
On the D drive of this server i have folder that represent each of my
departments. Under the departments, i have a users directory with
directorord
under that for each user. Im trying to give users rights to there own
directory, without allowing them to browse under the root users directory
and
seeing all the other users directories and info. When they browse through
the
network; i only want them to see the directory and or files that they have
rights to.
So far, this is what i have. The server is Server3. On the d drive i have
d:\\department\users\username. With in the properties of the users
directory
i have give the user full rights to their own directory. I have shared out
the department directory to a group that all the users in that department
belong to. I left the default security rights for now. They are
DomainUsers/
Read & Execute, List Folder Contents, Read, and Special Permission. When i
log into the users workstation, they currently can browse
//server3/department/users/ and see all the other users directories and
files. How Do i have create rights so that users only see their own info.
Thanks for your help in advance
.
- Prev by Date: Re: Security update failures
- Next by Date: Spyware/malware removal
- Previous by thread: tcp/ip via http proxies
- Next by thread: Re: File Server rights
- Index(es):
Relevant Pages
|