Broken Permissions in File Sharing

Hello -- When I attempt to share files from my Mac Mini (running 10.6.8), the permissions set in the File Sharing settings are not enforced (permissions).
For testing purposes, I simply created two users and gave user 1 permission to a folder share. But when user 2 authenticates, that user has full read/write permissions to the folder.
I did a quick screen capture demonstrating this (only 1minute long video). Make sure it is full screen and in a HD setting so you can see the user names and other details.
http://youtu.be/KbCsiYOU3Dw
I very much want to comission my old Mac Mini to be a local file server, but if all share permissions are going to be broken, well that's pretty sad. I would use strictly AFP, but I have two clients on the network here that need SMB shares.
Thanks!

Anyone with a thought/idea?
I can't believe the sharing permissions are so broken.
Thanks!

Similar Messages

  • How to config administrator permissions in file sharing

    Hi,
    I am setting file sharing with smb.
    But when I connect as administrator account, It show me all of the volumes on system.
    I hope to just access volumes or folders I want.
    Can I configure or customize permissions for the administrator account?

    Hi ,
    try this,
    http://myjdbc.tripod.com/basic/jdbcurl.html
    Regards
    Elango.

  • Permissions for file sharing to Windows users

    Greetings, I would be very pleased if someone could help me with file sharing permissions for Windows users of a Mac mini file server running Snow Leopard 10.6.1 (not server).
    I have a folder in my root directory, lets call it Project, that holds a series of 10 sub folders, say 1 through 10. Some of my users I wish to have read/write access to the whole Project directory, and, having enabled file sharing in System Preferences (and SMB for Windows), I did cmd to get info on the Project folder, ticked sharing, added the users (whose user accounts I had replicated on the Mac from their Windows machines), gave them read/write access, and then was able to map a drive to Project in their machines. All good so far, notwithstanding an hour tussle with a Vista laptop . The other user 'groups' were set the following permissions: me - read/write; Admin - read/write; Everyone - no access; which seemed sensible.
    Then, when I wanted to only share say sub folders 4, 5 and 6 with other users, who will not have access to the whole Project directory, things were not as straight forward. I followed the same procedure as above, but for the particular sub folders. However, I think they are only able to see them if I provide read or read/write access for Everyone to the parent Project directory. This of course then lets them at least see all the other folders I do not want to share with them. I don't seem to be able to remove the Everyone group from the Project directory, which occurred to me might resolve this.
    Any thoughts? Thanks.

    "On the way down, it seems to me that you still can prevent that user from using folders that he or she is not supposed to use by setting appropriate permissions."
    I don't think this is the case. If I allow someone read & write access to a folder because they need to have read & write access to two of three subfolders, I cannot deny them (at least) read access to the third folder.
    In respect of a particular folder:
    1. You can only assign read; read & write; or write (drop box) to an individual user; and
    2. You can only assign No Access to everyone.
    Do I need to use Snow Leopard Server to be able to assign No Access to a particular folder for an individual user?

  • Force permissions for file sharing (acl)

    Hi all
    I'm trying to set up a server so that multiple users can share files over sftp and ssh.
    To do this I did the following:
    0. Mounted an ext4 partition with acl enabled
    1. Created a folder with an appropriate group (say 'sharing')
    2. Set the gid flag on it (chmod g+s)
    3. Added all the users to the sharing group
    4. Setup acl on the folder :
          setfacl -dm u::rwX,g::rwX,o::- /path/to/folder
          setfacl -dm m::rwX /path/to/folder
          setfacl -dm g:sharing:rwX /path/to/folder
    Now, whenever I create files or folders inside my shared folder they have the correct permissions (660) and the sharing group. However, when the files are *transferred* in via sftp, scp, unison etc the acl permissions do not take hold.
    With unison I've tried setting perms=0 and dontchmod=true but this just gives all files -rw------- permissions.
    SFTP mirrors the original permissions but is 'masked' by acl: i.e. a 666 file is set to 660 (as expected) while a 644 file becomes 640 (what i want is for it to be set to 660)
    Is there any way to force permissions (with acl or some other tool) on files added or transferred into a folder regardless of the software doing the transferring? Ideally, I'd like it if this were something that happened completely on the server and did not depend on me configuring client tools.
    Thanks!
    Last edited by harshad1 (2014-05-22 15:09:10)

    rune0077 wrote:
    Change the umask of the sftp process.
    In your sshd_config there's a line that says:
    Subsystem sftp /usr/lib/ssh/sftp-server
    Append -u 0002 (or whatever umask you want) to the end. Like this:
    Subsystem sftp /usr/lib/ssh/sftp-server -u 0002
    First thing I tried. Doesn't seem to work.
    I should mention that I'm using sftp-chroot and I've used mount -bind to allow sftp users access the the (shared) data folder from with the chroot.
    I don't know how this might affect the application of umask.. which i'm enabling by:
        ForceCommand internal-sftp -u 0007
    I was really hoping i'd be able to force this on the file-system level with acl or something similar

  • Permissions Of File Put In A Drop Box?

    Hi,
    If you put a file in the Drop Box of someone on another Mac, what permissions should that file have? Should the permissions of the file automatically change as they are copied, to include read&write permissions for the owner of the Drop Box they're going into?
    I never really thought about this before. Are all files that you share with Macs, by default, read only? That seems really messed up because it means nobody else can edit them, change them, or modify them in any way.

    Thanks for your help. It's all very confusing isn't it. Maybe permissions when file sharing are a bit more confusing in Leopard than they were in TIger. Maybe the problems I've encountered are due to a bug with Leopard? Who knows.
    I went into Mac Help and read the article on Drop Box. I also read the article "Finding shared file folders". From what I've read:
    The *Public folder* is set up with read-only permissions that allow others to see and copy, but not change its content.
    The *Drop Box folder* is set up so other people can copy files to it, but can't see its contents.
    The *Shared folder* (Macintosh HD > Users > Shared) you can use to share files with other users on your computer. The Shared folder is set up with read/write permissions so that all users can open files in this folder and copy files to it.
    For my purposes, sharing files between users on the SAME computer, the Shared folder seems like the thing to use.
    Message was edited by: Reuben Feffer
    Message was edited by: Reuben Feffer

  • Personal file sharing: file copying broken from/to imported account?

    I have an iMac G5 with two user accounts A and B ; and a MacBook Pro with two user accounts A' (imported from A with the migration assistant) and C.
    Personal file sharing, FTP and SMB are enabled on both machines. The firewall is disabled. Permissions, as well as the Keychain have been repaired.
    When I am logged as A' on the MBP, and when I connect to the iMac with the username/password of A, I can't copy files from A' to A : I get the following error message [The operation cannot be completed because you do not have sufficient privileges for some of the items]. However, a 0-byte file is created on A'. The same problem occurs from A to A'.
    This problem drives me crazy because :
    - I can read and delete any file in A' from A (and vice-versa). Only copy and modification doesn't work.
    - I can copy files from A to C, A' to B, C to A, B to A'.
    - FTP sharing between A and A' does work.
    Someone got the problem solved by re-creating his account and re-importing all his data, but I absolutely want to avoid that. I'm sure there can be a simpler solution...
    It appeared to me that the only reason why AFP copy doesn't work between A and A' is that A' was imported from A. It seems also that a common broken preference/setting is not the source of the problem, since sharing works from/to any other account (and well, re-creating the account couldn't solve the problem as it would re-set the broken settings).
    I would like to know which information is used to determine user privileges when copying from one machine to another...
    A strange thing I noticed is that both A and A' have the same generateduid (which is thus not "unique") - could it be the source of the problem?
    If you have two machines with one account imported from one machine to another, can you check whether Personal file sharing with this account works? I love understanding why stuff doesn't work.
    Thanks!

    Here are the results of a few more experiments... Something is definitely broken with those two user accounts, but I'd like to know why, and how it got broken
    I have replaced the names of the accounts/machines by more meaningful identifiers.
    From the MBP, trying to access Account_B on the iMac:
    MBP:~ account_A'$ mkdir test
    MBP:~ account_A'$ mount -t afp afp://accountB:*****@iMac/accountB test
    mount_afp: the mount flags are 0000 the altflags are 0020
    MBP:~ account_A'$ ls -l test
    total 0
    drwx------ 29 account_A' account_A' 942 Nov 8 22:28 Desktop
    drwx------ 14 account_A' account_A' 432 Sep 24 23:47 Documents
    (And I can copy whatever I want in test)
    Now trying to access Account_A:
    MBP:~ account_A'$ mkdir test
    MBP:~ account_A'$ mount -t afp afp://accountA:*****@iMac/accountA test
    mount_afp: the mount flags are 0000 the altflags are 0020
    MBP:~ account_A'$ ls -l test
    total 0
    drwxr-xr-x 23 501 501 738 Aug 26 00:03 Code
    drwx------ 13 501 501 398 Nov 8 13:10 Desktop
    (I can't copy to test here)
    501 is the uid of account_A (on the iMac). (The uid of account_A' is 503).
    Same stuff through SMB:
    MBP:~ account_A'$ mkdir test
    MBP:~ account_A'$ mount -t smbfs //accountA@iMac/accountA test
    Password:
    MBP:~ account_A'$ ls -l test
    total 0
    drwxr-xr-x 1 account_A' account_A' 16384 Aug 26 01:03 Code
    drwxr-xr-x 1 account_A' account_A' 16384 Nov 8 13:10 Desktop
    (In this case, it works)

  • How can I move over my iPhoto from iMac 10.5.8 onto new macbook pro Mavericks? Tried file sharing tells me I haven't got the relevant permissions when I try to put it onto desktop. Can someone give noddy instructions on what to do please?

    I have tried copying iphoto onto flash drive and then putting on the pro but it just comes up as having no photos in it. Can I have two seperate iphotos on one laptop? I tried file sharing the iphoto library too but just comes up with not having the relevant permissions to put it on the pro. Please help, I'm not massively computer literate and just want my laptop to have photos on. I also need to move my itunes music....how would I do that? I don't want everything from my imac so don't want to use migration assistant. Thank you.

    Hi Thomas,
    Thank you again for another very swift response.
    The folder got into the Trash because I'm an idiot who didn't think he needed it anymore.
    Then I thought: hold on a minute.  I'll pull that back out of the Trash before I delete it, JUST in case.
    And thank goodness I did.
    Here are the Terminal results:
    Last login: Thu May 24 21:10:04 on ttys000
    unknown-00-25-00-4c-8b-0f:~ michaelthorne$
    unknown-00-25-00-4c-8b-0f:~ michaelthorne$ ls -al ~/.Trash
    total 32
    drwx------   4 michaelthorne  staff    136 24 May 22:01 .
    drwxr-xr-x+ 17 michaelthorne  staff    578 24 May 17:28 ..
    -rw-r--r--@  1 michaelthorne  staff  12292 24 May 22:01 .DS_Store
    drwxr-xr-x   5 michaelthorne  staff    170 24 May 21:52 untitled folder
    unknown-00-25-00-4c-8b-0f:~ michaelthorne$
    unknown-00-25-00-4c-8b-0f:~ michaelthorne$ ls -al ~/Desktop
    total 48
    drwx------+  8 michaelthorne  staff    272 24 May 22:01 .
    drwxr-xr-x+ 17 michaelthorne  staff    578 24 May 17:28 ..
    -rw-r--r--@  1 michaelthorne  staff  21508 24 May 22:01 .DS_Store
    -rw-r--r--   1 michaelthorne  staff      0 18 Sep  2004 .localized
    drwxr-xr-x  12 michaelthorne  staff    408 24 May 17:23 22.05.12
    drwxr-xr-x@  3 michaelthorne  staff    102 15 Apr  2011 Mail.app
    drwxr-xr-x   7 michaelthorne  staff    238 24 May 16:42 V2 copy
    drwxr-xr-x   7 michaelthorne  staff    238 24 May 19:30 salvation
    unknown-00-25-00-4c-8b-0f:~ michaelthorne$

  • File Sharing Permissions to Documents Without Having to Assign Each?

    Not sure where else to ask this.
    Background - work environment. Small 3 person office. Airport network. All computers Duo2Core with 10.5.1.
    On my iMac - I have this configuration: Home>Public>Shared>Clients> Abel thru Zulu - (separate folders for each client), and inside each client folder, subfolders such as "Correspondence", "Documents", "Research" and so forth.
    When I create a new document, for example - Clients>Charlie>Documents: "Work Paper", and I want my staff to have read/write access in order to revise or supplement "Work Paper", I have to manually Get Info for the documet, type in my password, unlock the little lock, and assign Read/Write.
    I understand the security aspect, but for the Clients folder ONLY, I'd like any new document I create and place in there to automatically have Read/Write permissions for my staff.
    Know little to nothing about Apple Script, but that's probably the only way to work around the routine of manually going to "Get Info" six dozen or more times a day.
    So - anybody got a script that will do the trick? If so, a little instruction on setting it up would also be most appreciated.

    I've been fiddling with sharing things between my two admin users on my computer, so that both have read and write permissions to files. I seem to have gotten it right, anyway, I just added a couple of jpegs to the folder from my primary account, logged into the other admin account, opened a jpeg, edited it and saved it with no problem, and did the same with my test account. Perhaps this will help you.
    1. The users have to be members of the same group, in my case I picked the group "staff" since both admin users are members of that group, as well as the test account
    2. I created a folder in the Sharing folder, called it "readwrite"
    3. I then launched Terminal and entered this command:
    NoobiX:~ francine$ chmod +a "staff allow write,append,writeattr,writeextattr,fileinherit,directoryinherit" /Users/Shared/readwrite
    hit Return. Then did this command:
    NoobiX:~ francine$ chmod +a "staff allow addfile,add_subdirectory,delete_child,writeattr,writeextattr,directoryinherit" /Users/Shared/readwrite
    hit Return again. Note there are spaces between chmod, +a, the permissions list, and the path.
    I then added the files to the readwrite folder, logged in to the other staff accounts, and successfully edited the added files. I then returned to my account, opened one of the edited files and made another change and saved it. Looks like it is working as intended.
    Francine
    Francine
    Schwieder

  • File sharing via NFS - permissions problem? SOLVED

    I'd like to share files between my two linux boxes, a desktop (DT) and a laptop (LT).  DT runs Xandros 3, LT runs Arch.  They are connected via a router.
    NFS works all right, up to a point.  Using NFS, I can access all filesystems on DT from LT but the reverse is not true.  Arch on LT resides in two partitions, / and /home.  From DT I can access all the directories in the root filesystem / of LT as well as their subdirectories, with two exceptions.  I cannot access any subdirectories in /home, including my home dir /home/robert/ which doesn't even show up, and in /mnt I cannot access the filesystems of other Linux distros that are mounted in Arch at these mountpoints (e.g. WinXP at /mnt/sda2, Xandros 4 at /mnt/sda5, Slackware 11 at /mnt/sda7) even though they can be accessed perfectly well from within Arch on LT.
    I've also exported the LT /home filesystem separately by adding the line '/home  DT_hostname(rw)' in /etc/exports on LT, and running # mount LT_hostname:/home /mnt/LT_hostname_home on DT.  When I do that /home/robert shows up in the file manager on DT but when I want to open this directory I get the error "Access denied".  The permissions for this LT directory, as seen when mounted on DT, are 'drwx--x--x 1000 users'.  When I try to make this directory fully accessible by running 'chmod a+rw /mnt/LT_hostname_home/robert' as root I get the error
    'chmod: changing permissions of `/mnt/LT_hostname_home/robert': Operation not permitted'.
    In short, while Xandros on DT is quite permissive in allowing me to access all of its filesystems in their entirety from within Arch on LT, Arch on LT is more finicky as it denies access to Xandros on DT to some critical subdirectories.
    I've also tried 'fish' in Konqueror, with similar results.  Running 'fish://DT_hostname' in Arch on LT gives me full access to filesystems on DT but when I'm running 'fish://LT_hostname' on DT, I get the error 'Could not connect to host LT_hostname', i.e. Arch rejects the connection attempt.
    To sum up, when I'm using NFS the permissions don't seem to be fully correct on Arch on LT, and I don't seem to be able to change them, and when I'm using 'fish' something is also fishy on the Arch side.
    On a side note, both systems run firewalls (DT: Firestarter, LT: Arno's FW) which I had to stop - without doing that nothing connects.  Also, both systems obviously run all necessary nfs and ssh daemons.
    How can I fix this problem?  Would shfs work any better?  Also, I'd prefer to keep my firewalls up all the time.
    Thanks for your help.
    Robert

    Thanks, FUBAR and tomk, for your tips.  I eventually managed to get my two boxes (DT with Xandros and LT with Arch) connected in such a way that DT can access all filesystems on LT and vice versa.  I experimented with three different ways of doing this, NFS, FISH and SHFS.
    Using NFS entailed the most involved configuration of the three.  FISH was the simplest to set up but SHFS wasn't that much more complicated.  My preference would be for SHFS.  See:  http://shfs.sourceforge.net/
    NFS
    Using NFS in Arch only requires installing portmap and nfs-utils; most of the NFS functionality has already been compiled into the kernel.  As FUBAR suspected, the uid's for user robert were different on the two machines: uid=1000 in Arch and uid=1001 in Xandros.  In NFS, I got around that by putting 'no_root_squash' in the export directives in /etc/exports, i.e.
    / hostname_DT(rw,no_root_squash,subtree_check)
    /home hostname_DT(rw,no_root_squash,subtree_check)
    /mnt/sda5 hostname_DT(rw,no_root_squash,subtree_check)
    /mnt/sda7 hostname_DT(rw,no_root_squash,subtree_check)
    Using NFS, one also has to add lines in /etc/hosts.allow for each of the daemons and programs used by NFS, specifying which hosts are allowed to use these services, e.g. in my case for portmap
    portmap: 192.168.0.5, 192.168.0.7 # you have to use IP addresses!
    and the same for nsfd, nfslock, lockd, rquotad, mountd, statd, mount, umount.  In Xandros, two of these have different names: rpc.nsfd and rpc.mountd.
    Also, to use NFS in Arch one has to add the services portmap, nfslock, nfsd to the DAEMONS line in /etc/rc.conf, e.g. right after network.  Finally, I have to stop the firewalls on both machines when I want to use NFS.  After doing all of that, I can use Konqueror as user robert to access all filesystems on the respective server (DT or LT) from the other machine as a client except for /home/robert and /mnt/sda7/home/robert (that's a Slackware install) on LT; for these I have to use Konqueror as root on DT.
    FISH
    Using FISH is very simple.  Remote filesystems don't have to be mounted, and the only thing that's required is that the sshd service is running on the file server.  I.e. in Arch one has to install openssh and put the service sshd in the DAEMONS line in /etc/rc.conf.  Firewalls must be stopped to set up the connection but once the connection is established it looks as though one can restart the firewalls.
    One should also add a line in /etc/hosts.allow for the hosts that are allowed to use sshd, i.e.
    sshd: 192.168.0.5, 192.168.0.7 (or sshd: ALL )
    and comment out the line ALL: ALL: DENY in Arch's /etc/hosts.deny.
    Once this is done, all that's needed to access the root filesystem of the server is to enter 'fish://root@hostname/' in the URL field of Konqueror as an ordinary user, followed by the root password.
    The drawback of FISH is that one is frequently asked for the password but I suppose one can avoid that by using SSH keys.
    SHFS
    SHFS needs to be installed and configured on the client side, not on the server side.  The server only needs to have a working sshd running.  If you run Arch as a client, install shfs in it (pacman -S shfs) and make sure sshd is running on the server and firewalls are stopped.
    Next, create a mount point for the remote filesystem, e.g.
    # mkdir -p /mnt/shfs
    Set the suid bit on /usr/bin/shfsmount and /usr/bin/shfsumount if you wish to enable all users to mount (umount) remote dirs using shfs.  You can do this in Konqueror or by running
    # chmod u+s /usr/bin/shfsmount
    # chmod u+s /usr/bin/shfsumount
    so that the permissions are: -rwsr-xr-x root root.
    Then mount the remote shell filesystem:
    # shfsmount root@remote_hostname:/ /mnt/shfs -o uid=robert
    [or you can use # mount -t shfs root@remote_hostname:/ /mnt/shfs -o uid=robert]
    Using the option -o uid=robert got me around the mismatch of uid's for robert on the two systems.
    At the 'root@remote_hostname's password:' prompt enter root's password.  You're ready then to access the remote filesystem as user robert at /mnt/shfs, even after the remote firewall is restarted.
    As with FISH, so with SHFS, it seems to be necessary that a line is added in /etc/hosts.allow for the hosts that are allowed to use sshd, i.e.
    sshd: 192.168.0.5, 192.168.0.7 (or sshd: ALL )
    and that the line ALL: ALL: DENY in Arch's /etc/hosts.deny is commented out or removed.
    I'm still a newbie with file sharing on Arch (and non-Arch Linux).  Forgive me if the above comes across as somewhat amateurish.
    Robert

  • Problem with File Sharing-Permissions throughout Folders

    I'm having an odd problem when setting up a Mac Pro with File Sharing. I have a second Hard Drive in it which is a Server Drive to be shared as a networked Hard Drive for both my MBP and my Fiancee's MBP. Here is the problem I have.
    I set up File Sharing and set up both her ID and my ID. Since this is done she is able to get to drive from my MBP and she is able to get to the drive from her MBP. I am able to read or write to those folders. She is able to view them but is unable to write to them.
    I went to the Server Drive icon on the Mac Pro's Desktop. When I right click and do "Get Info" and select Sharing I can tell her ID is not listed on any of the Folders. She is listed as Read and Write for the entire Hard Drive (which is an internal drive). I am also listed as Read and WRite and then it lists Everyone and says No Access. The same is listed in System Preferences in File Sharing. I have heard this Everyone 'No Access' can cause problems but I prefer not to give access to everyone. The only other option is Read Only and Read and Write. Also, when I have Everyone selected the - sign is greyed out so I'm unable to remove Everyone.
    To continue, what is strange is I thought with it saying on the Server Drive itself for my Fiancee, read & write, that it would say this on every Folder inside. Yet when I select any Folder inside on the Server Drive and select Get Info it says for me "Read & Write" and for Staff "Read Only" and for Everyone "Read only" I'm not even sure where Staff comes fro and of course Everyone is Read Only and my Fiancee not even listed. It just seems that these file sharing permissions are not replicated througout all the Folders when I select it for the Hard Drive itself. What could be causing this and how can I get the same to go throughout the Folders? I know manually I could change them all but this would take a long time and likely still be a problem when any additional Folders are added.

    1. I have turned logged into it from my MBP while at Home and if I'm logged in as Guest I only see the Server Drive which is good. My concern is that if I log in with my login I then sell all Folders including the Main 'Macintosh HD' At least as a guest I can only see the Server Drive but is it any way I can stop it from showing all the other folders on the computer since I have no reason to do that?
    When you login to a mac as an administrator it is normal to see all the contents of the volumes connected to that mac.
    2. Also, I would like to disable all access for Guest. Yet I have it list Everyone or Guest in the file sharing and I have no way of deleting this. I don't want a Guest to be able to connect to this computer or share any files at all on it. Is there any way to disable this?
    Goto system preferernces-->accounts
    click on the lock to and enter your password to unlock the preference pane.
    Then select the guest account. Then uncheck the 2 check boxes. The account should now have 'disabled' underneath it.
    3. Security: How secure is this? I am using it on a Home Wi-Fi network with an Airport Base Station 1GB. I have the Leopard filewall set to "Set Access for Specific Services" since it won't work with "Allow only essential services" I hope my home network is more security but with Back to my Mac how hard would it be for someone to be able to find this computer on the network? I don't do any filesharing on my MBP but do have it set up for File Sharing but only with my login ID.
    If you have your base station set to distribute ip addresses then it is acting as a NAT router and will firewall you.
    I have not setup back to my mac yet so can't comment on its security. Although I would suggest a strong password.
    have a read of Mac OS X 10.5: About Back to My Mac security
    My method of remote access is to use SSH and run screen sharing over an SSH tunnel.

  • File Sharing permissions not saving on second drive

    Hello,
    in my Mac Pro running 10.5.6 I have a second drive that I recently installed, This drive has two folders in it that i wish to share. So I did the following steps:
    System Preferences > Sharing > File Sharing (SMB Sharing is being used as well as AFP)
    I then clicked the Shared Folders + and added folder1
    The following users were automatically added
    MyAccount Read and Write
    MyAccount Read and Write
    Everyone Read and Write
    Whenever i edit these permissions or attempt to add another user everything seems to of gone fine, but when i close System Preferences and reload it i get the following
    folder1 is still shared
    and the permissions are still the same as above.
    I've looked at editting the smb.conf file in /etc/smb.conf but i don't want to do that unless necessary. Also it doesn't appear that any of the other settings are saved here any information would be appreciated.
    Thanks

    This was due to the disk being a DOS-format

  • File Sharing - inherit permissions of parent folder

    First off, let me say that I'm a UNIX guy so I like the command line. The server admin tool is pretty unfamiliar territory for me..
    A friend of mine runs a graphics design firm and he needed a server. I set him up with an Xserve and let me say that it is blazing fast. I am having a problem though..
    There are currently two computers on the network, we'll call them users Mark and Jim. If Jim creates a file on the share, then Mark can't modify it and vise versa. This is obviously a permissions issue. Seen it a million times. Now...
    the permissions that are carrying over from the workstations are rw-r--r--. I'd like everyone to be able to modify these files on the share.
    The share is set up as permission 755 and if a new file/folder is created, I'd like it to pick up these permissions.
    I'm confused by this AFS/ACL/ACE vs. POSIX thing. Can someone help me out here?
    I had a UNIX server running NFS previously and never saw this problem.

    Hi
    For a good explanation and understanding of how ACLs work:
    http://discussions.apple.com/thread.jspa?messageID=1535247
    The above is for 10.4 Server. For 10.5 Server:
    http://discussions.apple.com/thread.jspa?threadID=1234220&tstart=0
    If you look here:
    http://discussions.apple.com/forum.jspa?forumID=1233
    You'll notice a lot of discussions regarding file sharing (the forum itself) and permissions (ACLs, POSIX) problems in particular. These current threads:
    http://discussions.apple.com/thread.jspa?threadID=1251475&tstart=15
    http://discussions.apple.com/thread.jspa?threadID=1428118&tstart=15
    may provide more information. There is also some discussion regarding the SMB service itself. In 10.5 it appears to be not fully functioning as it should. It seems access for clients is achievable only if Guest Access is enabled which kind of defeats the whole notion of controlling access. Apple may be addressing these issues in a forthcoming update? You could perhaps research this further? There are numerous online resources available that may be useful:
    http://www.apple.com/server/macosx/resources/
    http://www.afp548.com/
    http://bombich.com/
    http://www.macosxtips.co.uk/
    Hope this helps, Tony

  • File Sharing permissions

    I have 2 iBooks in the same office. They are set for file sharing. I have trouble moving files from one computer to the other. Always get the message that I don't have the proper permissions. How does one resolve this problem - so that all files can be easily moved from one computer to the other?
    Thanks
    Charles

    Not sure what folders you['re trying to copy/move from/to.
    Go get SharePoints from , http://www.hornware.com
    Install on both macs.
    Configure shared folders & permissions using this fine utility.
    (sharepoints app manages the samba server files that regulate sharing permissions. It's a GUI view into the smb.conf setup)

  • Permissions for files saved on another machine's shared disk

    I'm having problems with permissions on files that I create on my Macbook but save on my Mini. They are all created as read only for everyone except me, which rather defeats the purpose of having the shared directory on the Mini. I want to change the default permissions, but I can't even change them on a file by file basis - it simply doesn't allow me to change "everyone" to read & write. Really, changing the default will do, but I can't find where to change that. Can anyone point me in the right direction please?

    Is it possible to reformat the disk with other filesystem, like HFS?
    The drive will always be mounted as FAT32 when inside the Time Capsule because of the method used to mount it. Click here for more information.
    (31452)

  • File Sharing Permissions Issue

    We are using file sharing between macs in an art department, where we are sharing out one folder that contains many sub folders that contain art divided by customer name and job/art numbers. Whenever an artist makes a new folder (or copies a "Template" folder) into the shared working folder I have to then go to that artists machine and tell the Mac to copy permissions to all enclosed folders in order for another user to access the files contained within the new folders.
    Is there a way to make all enclosed folders in the shared folder inherit permissions? We have 15 artists sharing files, so fixing sharing permissions several times a day is getting old.

    you can put a name of a group instead of a specific user name in the command. for example you can put "staff" in there which is a group that contains all users with accounts on the machine. or you can just put "everyone" instead of "username" and that will work for all users including guest users. you can also make a group in system preferences->accounts, add the users you want to that group and use the name of that group in the command.

Maybe you are looking for

  • Please help with text boxes

    Can somebody help me wit hmy problem. I have a fom with many tables in it, some cells of the table are text boxes or at least they were when I developed it. Now I need to edit some of the cells and for some reason I cannot do it as the cell is not a

  • ACT! Software for Mac?

    Friends: I have a Mac only customer whose employer (all PCs) is using Act for Web (www.act.com/products/web/). Incredibly this web based database is supposedly accessible only with Internet Explorer 5.5+. My questions are: 1 - Has anyone tried other

  • HTTP/1.1 500 Internal Server Error.......content-type: text/html;charset=ut

    Hi I have created one web service... while i am testing in WSNAVIGATOR i am getting the following error......... <b>Request</b> POST /sap/bc/srt/rfc/sap/ZZ_BAPI_CUSTOMER_DISPLAY?sap-client=100 HTTP/1.1 Host: SAPDEV:8000 Content-Type: text/xml; charse

  • Upgrading iM from 8.1.6 to 8.1.7

    I migrated one of our 8.1.6 databases to 8.1.7. Based on the migration documentation, InterMedia Text needs to be manually upgraded. Following Doc ID 120611.1, I ran s0801070 as SYS, then as CTXSYS, I ran the following: u081070.sql dr0typec.pkh dr0pk

  • Which table stored the Inbound ASN IDOC # and corresponding In.B Delivery#

    Hi, May i know which table stored the inbound ASN IDOC# and corresponding created Inbound Delivery number?? Thanks!!