Question about ACL permissions

I have a situation and i wounder how to set up the permissions to make it work.
I have a folder (the share point) with ~200 subfolders,(called -1000,-2000, -3000, etc etc) In these folders there are tons of pictures.
I want a group(picturesRW) to be able to Read all files/folders, change name on the files (but not on the folders) and also add new files, but not delete(files or folders) Also not to move folders in to other folders (if that is possible).
Then i want another group to be able to just read everything, but thats the easy part.
Hoping there is someone that knows how to set this up. Have tried with allowing "Write attributes" but they still cant rename files..
Cheers!

Hi
A good place to start in my opinion in understanding ACLs is Gerrit de Witt's excellent series of posts:
http://discussions.apple.com/thread.jspa?messageID=1535247
If you have not already done so download the Admin Manuals:
http://manuals.info.apple.com/en/UserManagement_Adminv10.4.pdf
http://images.apple.com/server/macosx/docs/UserManagementv10.5.mnl.pdf
Bear in mind that on 10.4 Server you have to enable ACLs on a volume, followed by a restart otherwise the ACLs don't take and all that is working is the standard POSIX permissions. 10.5 Server has ACLs enabled by default. If you don't want them you have use terminal to disable them. You can't have ACLs without standard POSIX. Both permissions models apply and are accumulative. You can use standard POSIX permissions without ACLs. Be careful when using both models to define an access policy as a deny using both models can easily lock you out of the server. Use WGM when applying permissions. Don't be tempted to do it using the Finder. Defining permissions using terminal - in my opinion - is better but it is not to everyone's taste. ACLs should take precedence over standard POSIX permissions.
Hope this helps, Tony

Similar Messages

  • Question about firefox permissions for sites

    i have a question about sites permissions
    in google chrom it is easy to set permission for each site like (java, flash plugin, image , ...)
    http://i58.tinypic.com/nl66v9.png
    but i prefer to use firefox
    is there any addon or something else to have this options in firefox ?

    You can inspect and manage the permissions for the domain in the currently selected tab via these steps:
    *Click the "[[Site Identity Button|Site Identity Button]]" (globe/padlock) on the location/address bar
    *Click "More Information" to open "Tools > Page Info" with the Security tab selected
    *Go to the Permissions tab (Tools > Page Info > Permissions) to check the permissions for the domain in the currently selected tab
    You can inspect and manage the permissions for all domains on the <b>about:permissions</b> page.
    *https://support.mozilla.org/kb/how-do-i-manage-website-permissions

  • Question about Removing Permissions from the System Folder with chmod

    Hi
    I have a question about the removal of permissions from the System folder (and sub directories and files).
    Background
    Since installing a new HD, clean install of 10.6, application of updates and moving over backed up user directories I have had several issues with permissions.
    I have read several threads on this and using disk warrior and other tools I have been able to fix most of the issues.
    The Problem
    The issue that remains is a permissions check using Disk Utility keeps reporting
    ACL found but not expected on "System".
    followed by an extensive list of sub directories and all.
    Attempts to repair take hours and the same errors are reported.
    Found Solutions
    I have read about changing and/or completely removing the ACL from the permissions from the System using two different commands:
    sudo chmod -R -N ./System/* ( to remove all ACLs)
    or
    sudo chmod -R -E ./System/* ( to replace all ACLs )
    My Question is ( to the UNIX gurus):
    What is the difference between the usage with -E and -R and which is the best approach for a Systems directory and (subordinates)?
    Many thanks!!

    OK
    So I misread on the your instructions about the PW reset, did it, no harm in that. I did also select the options to reset all the permissions for all the accounts and the ACL issues were not resolved. My bad, I forgot to note that.
    You do suggest getting and expert opinion but alas these are rather elusive. In most cases the Apple solutions is to do a complete reinstall... I have found that unless you completely wipe a drive and rebuild everything there are often artifacts left behind. Since I have full and redundant back-ups I would rather explore and hack a little instead of a dull old system reinstall. The irony is the system issue I had was it was the result a reinstall and combo update on a new drive. I recognize the risks of entering the realms of the System folders but I am willing to explore knowing full well that I have a path to recovery.
    Thanks again for your insights. I come to the forums looking for insights and ideas but not a lecture...

  • Question about NTFS Permissions (Read Permissions)

    Hello All,
    I hope somebody can help me. I am wondering about the ACL Atribute "Read Permissions"
    Lets say I created a shre named "Share1"  were "User1" has read Access. I created a Folder named "Folder1" in share. In the NTFS Permssions I specified that User1 can "Traverse Folder and List Folder" . With These
    t atributes set the User is able to Access Folder1. But when I copy a File there - doesnt matter if it is a text document, an exe file, or so, the user is not able to Access the ressource. He gets an Acces Denied Error. Only if I add the Permission "Read
    Permissions" the user is able to open the file.
    I dont get why the user is able to open the Folder but not to execute files with the same permission. Is it possible to open a Folder without "Reading Permession Atribute" but not open a file?
    Why is the Feature available if i cant block users from reading permissions of a specific file?
    Thanks a lot in advance.
    Marco

    Something isn't adding up.  "Read Permissions" should be there by default because just about any basic permission grants the "Read Permissions" advanced permission. See the tables in the following TechNet to see what I mean.
    http://technet.microsoft.com/en-us/library/bb727008.aspx
    Check the Scope for the User1 entry on the Folder1 ACL. The Scope is shown under the "Applies to" section from the screenshot below.  If it doesn't read "This Folder, subfolders, & files" you may want to see if changing to that makes a difference.  

  • Question about Disk permissions in a Pro environment

    As I struggle with instability and numerous application crashes in Leopard, I'm trying to exhaust all troubleshooting opportunities, wondering if maybe it's a disk permissions/access issue that's causing my problems.
    I have two large SATA drives in an enclosure, in addition to two higher rpm internals, one for the system and apps exclusively, and the other as a dedicated scratch disk for Adobe products. I use the one large disk for document and job storage (literally everything I work on and save), and the other for TimeMachine backup. The permissions on the drives in the enclosure read:
    Me - Read & Write
    staff - Read & Write
    everyone - Read only
    and this is carried through the contents.
    When I look at the drive that the SYSTEM is on, the permissions are set as follows, when I Get Info on the hard drive icon:
    (unknown) - Read & Write
    Me - Read & Write
    (unknown) - Read only
    everyone - Read only
    I guess first off, I don't understand what the purpose of two different dual (unknown) users is, each set to different permissions. But that's the way it seemed to install, and after several permissions repairs on the disk.
    The next question is, on the hard drives, does this (unknown) user, or its double, need to be set up with some kind of permission? Since I'm working with various applications, particularly Adobe CS3, I wonder if as I'm working, the apps need to call for some special access to my files that they're not getting. Could that be why I'm crashing?
    And yet, I've repaired permissions on those volumes too.

    Hey Scott,
    On the Leopard installation, the only user accounts are me and root.
    Results from the terminal:
    POWERMACG5:~ thalo$ id
    uid=501(thalo) gid=20(staff) groups=20(staff),98(lpadmin),81(_appserveradm),101(com.apple.sharepoint.group.1),79(appserverusr),80(admin)
    POWERMACG5:~ thalo$ ls -al /
    total 41389
    drwxr-xr-x+ 33 root admin 1190 Mar 6 12:44 .
    drwxr-xr-x+ 33 root admin 1190 Mar 6 12:44 ..
    -rw-r--r--@ 1 thalo 501 12292 Mar 12 18:56 .DS_Store
    drwx------ 3 root 501 102 Feb 15 01:44 .Spotlight-V100
    drwxrwxrwt@ 3 thalo admin 102 Feb 15 09:26 .TemporaryItems
    d-wx-wx-wt 2 root staff 68 Feb 16 20:10 .Trashes
    -rw-r--r-- 1 root 501 0 Feb 15 01:44 .com.apple.timemachine.supported
    drwx------ 4 root staff 136 Mar 13 12:39 .fseventsd
    -rw------- 1 root wheel 131072 Feb 23 20:07 .hotfiles.btree
    drwxr-xr-x@ 2 root wheel 68 Sep 24 03:08 .vol
    drwxrwxr-x+ 108 root admin 3672 Mar 11 17:25 Applications
    -rw-r--r--@ 1 root admin 48640 Mar 12 16:20 Desktop DB
    -rw-r--r--@ 1 root admin 2 Feb 15 23:47 Desktop DF
    drwxrwxr-t+ 54 root admin 1836 Feb 29 00:48 Library
    drwxr-xr-x@ 2 root wheel 68 Sep 23 17:37 Network
    drwxr-xr-x 4 root wheel 136 Feb 15 02:47 System
    drwxr-xr-x 5 root admin 170 Feb 15 02:25 Users
    drwxrwxrwt@ 7 root admin 238 Mar 13 13:28 Volumes
    drwxr-xr-x@ 40 root wheel 1360 Feb 15 02:44 bin
    drwxrwxr-t@ 2 root admin 68 Sep 23 17:37 cores
    dr-xr-xr-x 2 root wheel 512 Mar 13 12:38 dev
    lrwxr-xr-x@ 1 root admin 11 Feb 15 01:51 etc -> private/etc
    dr-xr-xr-x 2 root wheel 1 Mar 13 12:39 home
    -rw-r--r--@ 1 root wheel 10272820 Feb 5 19:15 mach_kernel
    -rw-r--r--@ 1 root wheel 10696809 Oct 10 00:38 mach_kernel.ctfsys
    dr-xr-xr-x 2 root wheel 1 Mar 13 12:39 net
    drwxr-xr-x@ 7 root wheel 238 Feb 15 02:56 private
    drwxr-xr-x@ 66 root wheel 2244 Feb 15 02:44 sbin
    lrwxr-xr-x@ 1 root admin 11 Feb 15 01:51 tmp -> private/tmp
    drwxr-xr-x@ 11 root wheel 374 Feb 15 02:45 usr
    lrwxr-xr-x@ 1 root admin 11 Feb 15 01:51 var -> private/var
    POWERMACG5:~ thalo$ ls -al /
    total 48
    drwxrwxr-x+ 108 root admin 3672 Mar 11 17:25 .
    drwxr-xr-x+ 33 root admin 1190 Mar 6 12:44 ..
    -rw-r--r-- 1 thalo 501 21508 Mar 12 13:16 .DS_Store
    -rw-rw-r-- 1 root admin 0 Sep 23 20:43 .localized
    drwxrwxr-x@ 4 thalo admin 136 Feb 16 01:47 AOL
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 Address Book.app
    drwxrwxr-x@ 6 root admin 204 Feb 15 03:12 Adobe Acrobat 8 Professional
    drwxrwxr-x@ 12 root admin 408 Feb 15 03:19 Adobe After Effects CS3
    drwxrwxr-x@ 8 root admin 272 Feb 15 03:07 Adobe Bridge CS3
    drwxrwxr-x@ 7 root admin 238 Feb 15 03:15 Adobe Contribute CS3
    drwxrwxr-x@ 27 root admin 918 Feb 16 00:43 Adobe Device Central CS3
    drwxrwxr-x@ 11 root admin 374 Feb 15 03:16 Adobe Dreamweaver CS3
    drwxrwxr-x 4 root admin 136 Feb 15 03:13 Adobe Encore CS3
    drwxrwxr-x@ 8 root admin 272 Feb 15 03:11 Adobe Extension Manager
    drwxrwxr-x@ 10 root admin 340 Feb 19 17:37 Adobe Fireworks CS3
    drwxrwxr-x@ 12 root admin 408 Mar 3 00:10 Adobe Flash CS3
    drwxrwxr-x@ 6 root admin 204 Feb 15 03:14 Adobe Flash CS3 Video Encoder
    drwxrwxrwx@ 9 root admin 306 Feb 16 00:58 Adobe GoLive 9
    drwxrwxr-x 3 root admin 102 Feb 15 03:13 Adobe Help Viewer 1.0.app
    drwxrwxr-x@ 4 root admin 136 Feb 16 00:56 Adobe Help Viewer 1.1.app
    drwxrwxr-x@ 10 root admin 340 Feb 16 20:17 Adobe Illustrator CS3
    drwxrwxr-x@ 12 root admin 408 Feb 16 00:47 Adobe InDesign CS3
    drwxrwxr-x@ 14 root admin 476 Feb 17 17:18 Adobe Photoshop CS3
    drwxrwxr-x@ 6 root admin 204 Feb 15 03:14 Adobe Premiere Pro CS3
    drwxrwxr-x@ 5 thalo 501 170 Feb 17 18:02 Adobe Reader 8
    drwxrwxr-x 4 root admin 136 Feb 15 03:14 Adobe Soundbooth CS3
    drwxrwxr-x@ 4 root admin 136 Feb 15 03:10 Adobe Stock Photos CS3
    drwxrwxr-x@ 4 thalo admin 136 Feb 17 03:39 Alien Skin
    drwxrwxr-x 3 root admin 102 Mar 4 07:53 Aperture.app
    drwxrwxr-x 6 root admin 204 Feb 15 01:54 AppleScript
    drwxr-xr-x 3 502 502 102 Oct 26 15:29 Autodesk
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 Automator.app
    drwxrwxr-x@ 3 thalo admin 102 Dec 17 10:12 BBEdit.app
    drwxr-xr-x@ 6 thalo staff 204 Feb 26 09:00 Barcode Producer
    drwxrwxr-x 3 root admin 102 Oct 10 21:19 Calculator.app
    drwxrwxr-x@ 3 thalo admin 102 Feb 15 08:23 Cocktail.app
    drwxr-xr-x 3 thalo admin 102 Jun 22 2006 Comic Life.app
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 DVD Player.app
    drwxr-xr-x@ 10 thalo admin 340 Feb 28 15:50 Dark Castle 3 ƒ
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 Dashboard.app
    drwxr-xr-x 3 thalo 501 102 Mar 13 2006 DeepVacuum.app
    drwxr-xr-x 6 thalo staff 204 Feb 27 00:38 Developer Tools
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 Dictionary.app
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 Expose.app
    drwxrwxrwx@ 11 thalo staff 374 Feb 16 02:00 Extensis Suitcase Fusion
    drwxr-xr-x@ 3 thalo admin 102 Nov 9 15:39 Fetch.app
    drwxr-xr-x 6 thalo admin 204 Feb 10 2007 File Buddy 9
    drwxr-xr-x@ 8 thalo 501 272 Jan 31 2007 Final Draft 7
    drwxr-xr-x@ 3 thalo admin 102 Sep 10 2006 Firefox.app
    drwxrwxr-x 6 root admin 204 Feb 21 00:27 Flip4Mac
    drwxrwxr-x 3 root admin 102 Jun 19 2007 Font Book.app
    drwxr-xr-x@ 5 thalo staff 170 Feb 9 08:37 Font Finagler 1.0
    drwxr-xr-x@ 8 thalo admin 272 Dec 18 15:34 FontDoctor X for Macintosh
    drwxrwxr-x 3 root admin 102 Oct 10 01:03 Front Row.app
    drwxrwxr-x 3 root admin 102 Mar 4 07:53 GarageBand.app
    drwxr-xr-x 3 root admin 102 Feb 16 22:11 Garmin WebUpdater.app
    drwxrwxr-x 3 thalo admin 102 Nov 14 14:19 Google Earth.app
    drwxrwxr-x 3 root admin 102 Feb 20 12:00 Gordon.app
    drwxrwxr-x 3 root admin 102 Sep 24 01:58 Image Capture.app
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 Mail.app
    drwxr-xr-x@ 3 thalo staff 102 Feb 6 09:33 MenuCalendarClock iCal.app
    drwxrwxr-x 9 root admin 306 May 27 2007 MenuMachine 2
    drwxrwxrwx@ 16 thalo admin 544 Feb 16 02:13 Microsoft Office 2004
    drwxr-xr-x@ 14 thalo 501 476 Jun 14 2007 PanoramaMaker
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 Photo Booth.app
    drwxr-xr-x@ 4 thalo admin 136 Jan 25 07:39 PreMinder.app
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 Preview.app
    drwxrwxrwx@ 20 thalo admin 680 Feb 2 07:27 QuarkXPress 6.5
    drwxr-xr-x 3 thalo admin 102 Jan 4 14:49 QuicKeys.app
    drwxr-xr-x@ 5 thalo 501 170 Apr 2 2005 QuickBooks NUE
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 QuickTime Player.app
    drwxrwxrwx@ 8 thalo admin 272 Aug 6 2005 Roxio Toast 6 Titanium
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 Safari.app
    drwxrwxrwx 7 thalo 501 238 Feb 17 02:11 Silo
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 Spaces.app
    drwxrwxr-x 3 root admin 102 Sep 24 00:53 Stickies.app
    drwxrwxr-x@ 11 thalo admin 374 Feb 17 14:39 Strata 3D CX 5.5
    drwxrwxr-x@ 13 thalo admin 442 Feb 17 16:55 Strata Design 3D[in]
    drwxrwxr-x@ 9 thalo admin 306 Feb 17 17:06 Strata Foto 3D
    drwxrwxr-x@ 12 thalo admin 408 Feb 17 17:00 Strata Foto 3D[in]
    drwxrwxrwx 22 thalo 501 748 Feb 17 18:09 Strata Live 3D
    drwxrwxr-x 15 thalo 501 510 Feb 17 17:15 Strata Live 3D PDF
    drwxrwxr-x@ 10 thalo admin 340 Feb 17 17:36 Strata Live 3D[in]
    drwxr-xr-x 10 thalo admin 340 Feb 18 10:09 Strata RenderPro
    drwxr-xr-x@ 11 thalo admin 374 Nov 8 18:38 StuffIt 12
    drwxrwxr-x@ 10 thalo admin 340 Feb 25 23:41 SuperCard 4.6.2 Trial
    drwxr-xr-x@ 6 thalo staff 204 Feb 25 22:40 SuperCard® 4.5.2 Player
    drwxrwxr-x 3 root wheel 102 Oct 8 22:02 System Preferences.app
    drwxr-xr-x@ 4 thalo staff 136 Feb 27 23:37 TechTool Pro 4.app
    drwxrwxr-x 3 root admin 102 Sep 24 00:52 TextEdit.app
    drwxrwxrwx@ 11 thalo admin 374 Nov 6 2003 Thoth
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 Time Machine.app
    drwxr-xr-x 3 thalo admin 102 Feb 14 05:36 TinkerTool.app
    drwxrwxr-x+ 31 root admin 1054 Mar 11 20:48 Utilities
    drwxr-xr-x 3 root wheel 102 Feb 16 01:19 VPNClient.app
    drwxr-xr-x@ 5 thalo staff 170 Mar 10 18:45 Version 22u
    drwxrwxr-x@ 8 thalo staff 272 Mar 1 18:56 Windows Media Player
    drwxrwxrwx 8 thalo admin 272 Feb 16 20:28 games
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 iCal.app
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 iChat.app
    drwxrwxr-x 3 root admin 102 Feb 22 15:30 iDVD.app
    drwxrwxr-x 4 root admin 136 Feb 22 15:24 iMovie (previous version).localized
    drwxrwxr-x 3 root admin 102 Feb 24 22:21 iMovie.app
    drwxrwxr-x 3 root admin 102 Feb 29 00:48 iPhoto.app
    drwxrwxr-x 3 root admin 102 Feb 15 02:45 iSync.app
    drwxrwxr-x 3 root admin 102 Feb 21 22:48 iTunes.app
    drwxrwxr-x 3 root admin 102 Feb 24 22:21 iWeb.app
    drwxrwxrwx 12 thalo staff 408 Feb 17 05:43 vlc-0.8.6d
    POWERMACG5:~ thalo$ ls -al ~/
    total 64
    drwxr-xr-x+ 20 thalo staff 680 Mar 13 12:39 .
    drwxr-xr-x 5 root admin 170 Feb 15 02:25 ..
    -rw------- 1 thalo staff 3 Feb 15 02:25 .CFUserTextEncoding
    -rw-r--r--@ 1 thalo staff 12292 Mar 13 12:17 .DS_Store
    drwx------ 2 thalo staff 68 Mar 13 12:39 .Trash
    drwxr-x--x 3 thalo staff 102 Feb 18 18:24 .adobe
    -rw------- 1 thalo staff 82 Mar 10 08:02 .bash_history
    drwx------ 3 thalo staff 102 Feb 16 21:55 .cups
    -rwxr-----@ 1 thalo staff 177 Feb 16 01:24 .login
    -rwxr-----@ 1 thalo staff 181 Feb 16 01:24 .profile
    drwx------+ 24 thalo staff 816 Mar 13 12:27 Desktop
    drwx------+ 13 thalo staff 442 Mar 9 23:41 Documents
    drwx------+ 4 thalo staff 136 Mar 12 19:16 Downloads
    drwx------+ 49 thalo staff 1666 Mar 13 15:28 Library
    drwx------+ 3 thalo staff 102 Feb 15 02:25 Movies
    drwx------+ 5 thalo staff 170 Feb 15 09:19 Music
    drwx------+ 26 thalo staff 884 Mar 6 19:51 Pictures
    drwxr-xr-x+ 6 thalo staff 204 Mar 2 11:57 Public
    drwxr-xr-x+ 5 thalo staff 170 Feb 15 02:25 Sites
    drwxr-xr-x 3 thalo staff 102 Feb 23 12:19 StuffIt

  • Question about folder permissions

    I have set up separate user accounts for myself (as administrator) and my wife and four kids (a total of six user accounts). After having problems in iTunes and iPhoto with messages regarding "locked disk, or no access" I created a group called "family" which includes all the user accounts plus admin and root. I then changed the folder permissions for all the user subfolders (and their subfolders) to be as follows:
    owner = Eric, access = read & write
    group = family, access = read & write
    others = read only
    (Note that the folder permissions for the Users folder itself are the original ones, i.e., owner = system, access = read & write; group = admin, access = read & write; others = read only.)
    Are the changes I made unnecessary or incorrect? An alternative scheme that was recommended by someone in a thread pertaining to the iTunes "locked disk" issue was the following for a given user (presumably someone other than the administrator):
    owner = (user name), access = read & write
    group = (user name), access = read only
    others = read only
    Any comments/advice will be welcome.

    Hi Eric55,
    I want to suggest two things:
    You yourself should use a non-admin account for daily
    work. An administrator should administrate, and
    should not write a letter. This would reduce risks of
    malicious software doing bad things to your whole
    system (since it would have your admin rights) and
    you yourself doing bad things without noticing (like
    deleting important files accidentically just because
    you can do so without warning).
    Many thanks for your very helpful reply. I can see the wisdom of what you're suggesting. So, should I just create another account, e.g., called "Eric2," that I use for routine work, leaving the "Eric" account that has admin rights alone except when needed for admin tasks?
    Regarding your question with folder permission: There
    is a folder named "Shared" that should hold all the
    files that everyone needs to have access to. The
    important bit is that the files in it must also be
    available to everyone.
    I had understood from the book I bought ("Mac OS X, The Missing Manual, Tiger Edition," by David Pogue) that all users have access to the Shared folder and its contents. In fact, this is how I got into this whole issue of folder permissions. Pogue's book suggests putting music (MP3) files into the Shared folder (rather than leaving them in each user's Music folder) so that all users can share them in iTunes (after switching the iTunes music folder location to the Shared. . . folder). I did this, but then my son, working from within his user account, was unable to copy the contents of a music CD into the Shared folder. That got me started on what seems to have been a misguided effort to expand folder permissions so that he (and other users) would have read & write access to the Shared folder, not just read only access.
    But once I did that, the kids starting having problems with iTunes and iPhoto from their user accounts. For example, a common problem was that when trying to open iTunes they would get an error message saying that iTunes was on a locked disk or they didn't have permission to access the folder. This didn't make sense, since I thought I'd expanded their access rights sufficiently by putting them in a "family" group and giving that group R&W access. So at that point, I concluded that I didn't understand permissions well enough!
    And for this a common group is
    alright, but Mac OS does not do this automatically;
    all files copied there must be changed manually (or
    by a folder action Apple Script, if you know how to
    do this) to this group and have the proper rights
    set.
    That's what I thought I'd done with my "family" group, but that seems to have created more problems that it solved.
    BTW, I would not put admin or root users in this
    common group, again out of caution.
    OK, makes sense.
    And user folders
    should belong to users, not to everyone. Just my
    thinking ...
    Again, what I was basically trying to accomplish was to have all the music files in the Shared folder, but at the same time make it possible for individual users to add music to the Shared folder. Maybe you have some suggestions for how to do that, and for how to revise the permissions I set up, e.g., to put them back to how they were before. If so, many thanks in advance!
    --Eric

  • Question about Disk Permissions Warming

    While doing the monthly repairing disk permissions on my mac book pro I saw the following:
    Warning: SUID file "System/Library/CoreServices/RemoteManagement/...Contents/MacOS/ARDAgent" has been modified and will not be repaired.
    Quite honestly I never read what is in the text box when I do these monthly repairs, but this time I noticed the Warning and thought I should ask if anyone has seen this before.  Is it something I need to have checked out?  Thanks.

    1. That message isn't a cause for concern.
    2. Repairing disk permissions monthly is a waste of time. It should only be done as a troubleshooting step.
    (123312)

  • Simple (?)  question about KM Permissions

    Is it possible to make a KM Folder writeable for end-user making sure at the same time that the end-user when viewing the folder is only able to see the documents he/she created/uploaded and not the content uploaded/created by others.
    You can of course write a resource list filter to implement this, but my question is : is there a way to achieve this without programming, by simple configuration.

    Hi Theo Paesen
    You can try for this if your requirement is for creating a Personal folder for your user.This Corresponding Folder   will only be visible to the user based on his/her Userid.So the user can upload his/her documents to this folder and he/she alone will be able to see it.
    Create a KM Navigation iview.In the path to the folder in the KM Navigation iview you can use the Userid as follows.
    Path to initially displayed folder : <path from root..folder/<user.id>.So depending upon the user, the contents inside the corresponding folder is displayed.
    Eg: all personal folders inside the documents/Personal folder.
    Path to initially displayed folder : documents/Personal/<user.id>
    Regards
    Geogi

  • Question about permissions in portal content

    Hi all,
    I'd like to ask you guys a question about permissions given to pages in the portal content (EP 6.0).
    When a user accesses a page that contains an iView (for example one for a Web Dynpro, or for a BSP), and the page permissions are correctly set for the user (or a group the user is member of), everything works fine and the user can see and use the application contained in the iView.
    If the Page has no permissions set and the user tries to access this page, an empty page appears instead and the "Detailed Navigation" column appears on the left.
    I know I should not let the user see the link to the page he is not authorized to use (this is done managing the roles given to the user), but I'd like to know from you if it is possible to show a message like "unauthorized user" instead of the empty page that appears.
    Can you also tell me how to keep the "Detailed Navigation" column hidden on the extreme left?
    Thank you for any hint you can give to me.
    Lorenzo

    Hi Lorenzo,
    a way how you might go ahead and hide or show content for specific user groups is via roles merging (see documentation <a href="http://help.sap.com/saphelp_nw2004s/helpdata/en/53/89503ede925441e10000000a114084/content.htm">http://help.sap.com/saphelp_nw2004s/helpdata/en/53/89503ede925441e10000000a114084/content.htm</a>
    In essence, this means that you create for example 2 roles (A and B): A contains some content everyone can see, B more secure content for another group. You merge those 2 roles via a merge ID - and if a user has both roles, he sees the content in this workset with all the navigation options. If somebody only has role A, he will only see this content.
    Maybe this is someting that could help with you considerations (always depending on the number of items that are affected, this might be a useful way, or leading to too much confusion, because you have too much different roles).
    Best regards
    Jana

  • The question about vlan,acl of SWR224P

    i find a strange thing.when i configure vlan,i find i can not write the english word in the "VLAN Name "
    if i do,when i reboot this machine,the configration about vlan will bo lost??????????so,is there anybody can tell
    me why.....
    another problem,when i configure the ip acl,for example, Source IP Address1.1.0.0  Wildcard Mask0.0.7.255
    destination any ,protocal any 
    but it tell me the date is wrong.so is the format i configure wrong.
    thank you........body

    hi,
    I also tried to configure VLAN for my switch, you may check on this link on how to create VLAN. This link is for SRW224G4P but it might work on your SRW224P
    http://kb.linksys.com/16824;
    Another thing to consider is the fimware of your switch, check the version of the firmware and if it's a lower version you may  update it.
    Regarding your second inquiry about ACL, you may try to reconfiguring your ACL again once you updated the firmware.

  • Basic questions about JAAS capabilities

    I've never used JAAS for authentication or authorization in a Java app before. Can somebody that has (or at least has some experience and knowledge about JAAS) please answer the following couple of basic questions about it? (I know I could probably answer these myself with a few hours of reading.)
    1. Can I use JAAS to restrict the users that can execute specific methods of my code?
    2. If the answer to #1 is yes, is there a way to programmatically determine if a JAAS login user has the permissions to run a method before actually calling that method. In other words, can I ask something like canUserExecute(method) or do I have to just put the call to the method in a try/catch and catch a security exception of some type?
    3. Is it fairly simple to have JAAS authenticate against a Windows Domain or a LDAP server?
    4. Are there programmatic ways to add or edit user information in JAAS?
    Answer to any of these questions are greatly appreciated. I'll even toss a couple of Dukes to the people that answer each question. Thanks in advance.

    You might look at the AfterthoughtSoft-Secure product at http://www.advancedmodelingconcepts.com. It is designed to do just that and will easily allow you to connect to users/group repositories that are in anything from a simple text file all the way up to Kerberos V.
    You can contact the author of the product (me) at bart dot jenkins at gd-ais dot com.
    bart

  • Three questions about Java and Ftp

    Hello, i've the following questions about Java and Ftp:
    1- .netrc file is in $HOME directory but i can't access to this directory from java code. The following line producesan Exception (directory doesn't exists)
    FileWriter file = new FileWriter ("$HOME/.netrc");
    2- .netrc file must have the following permissions: -rw- --- --- but when i create the .netrc file the following permissions are on default: -rw- r-- r--, how can i change this permissions? (In java code, i can't use chmod.....)
    3- Are there any way to pass parameters to a .netrc file? If i get to do this i needn't change the permissions because i can't modify or create/destroy this file.
    Thanks in advanced!!!
    Kike

    1- .netrc file is in $HOME directory but i can't
    access to this directory from java code. The
    following line producesan Exception (directory
    doesn't exists)
    FileWriter file = new FileWriter ("$HOME/.netrc");$HOME would have to be replaced by a shell, I don't
    think you can use it as part of a legal path.
    Instead, use System.getProperty("user.home");
    Ok, thanks
    2- .netrc file must have the followingpermissions:
    -rw- --- --- but when i create the .netrc file the
    following permissions are on default: -rw- r--r--,
    how can i change this permissions? (In java code,i
    can't use chmod.....)Yes, you can: Runtime.exec("chmod ...");
    I need to use estrictly the .netrc with -rw- --- --- permissions
    Yes, i can use Runtime.exec ("chmod ..."); but i don't like very much this solution because is a slow solution, am i right?
    3- Are there any way to pass parameters to a.netrc
    file? If i get to do this i needn't change the
    permissions because i can't modify orcreate/destroy
    this file.I don't think so. Why do you need the .netrc file in
    Java at all? Writing a GUI frontend?I want to use automatic ftp in a java program and FTP server, the files and path are not always the same, so i can:
    - modify .netrc (for me is the complex option)
    - destroy and create a new .netrc (is easier but i have permissions problem)
    - use .netrc with parameters but i haven't found any help about it
    Thanks for your prompt reply!!!!
    Kike

  • Hello am using ios 7.0.4 I have a question about messages that it does not show the time of a particular message after first message that I recive form a paricular person so please in the next version change this and with every message show time and date

    hello am using ios 7.0.4 I have a question about messages that it does not show the time of a particular message after first message that I recive form a paricular person so please in the next version change this and with every message show time and date

    Hi,
    How is everything going? Have you checked this issue from OWA? If so, please let me know the result.
    In adition, please also try to use the following powershell commands to check if the assistant has right permissions:
    Get-MailboxFolderPermission -Identity
    CEO’s email address:\Calendar -User assistant’s email address
    Also check with:
    Get-Mailbox -Identity CEO’s mailbox
    | fl *GrantSendOnBehalfTo
    Please let me know the result.
    Best Regards,
    Steve Fan
    Forum Support
    Come back and mark the replies as answers if they help and unmark them if they provide no help.
    If you have any feedback on our support, please click
    here

  • Question about how the Robocopy /B switch works...

    I've been experimenting with robocopy recently, and most switches seem self explanatory for the most part; although I have a question about the /B switch.
    The help says the following:
    /B :: copy files in Backup mode.
    I've checked multiple forums and websites to try and elaborate on this a little more, and from my understanding this switch enables backup mode that essentially gives the ability to change the acls of a file/folder when the account running robocopy does
    not have sufficient privileges, to perform a successful copy.
    My question is, when the acls are changed when using this "backup mode" switch, with the /copyall switch, will the file still retain the same user access that it originally had - or does it change all of the security settings?
    I'm hoping it will somehow change the security settings, create a copy, and retain the same acls as the original - so users can still access necessary files.
    Can someone please explain how this "backup mode" works?
    Thanks in advance.

    This is a very useful thread with a lot of hostility in it.
    I have to agree with Jonathan and hazymat: there are few other forums that will discuss the exact function of /b switch, the TechNet article just says "copies in Backup Mode" (I have the article bookmarked), and when doing a google search, THIS page comes
    up as the top result! Kinda difficult to tell people they should go search, when you are the exact destination of that search, isn't it? ;)
    No offense to anybody working hard to help out here, but this is why sites like Stack Exchange will overshadow every traditional tech forum very soon. More concise question/answer format, more civil, and they actually encourage old questions developing new
    answers! All q&a is cataloged for future reference. Their focus is on being a 'resource'.
    The negativity here is unfortunate, you guys have great potential to be a very helpful resource for people. Who are you trying to be, the guys with all the answers, or the guys who say "get out of here, your answer isn't in here. Go search for it."?
    Regardless, many thanks to jrv! for helping me with my robocopy batch SCRIPT which I just used to create an automated backup! Take care boys. And yes, I just bumped your old-old thread.
    Unfortunately I think you miss the point.  RoboCopy is an application.  It is not a script.  This is a scripting forum.  Many people come here nd never read the forum guidelines and do not ask script related questions.
    The /b switch is documented in RoboCopy help.  Of course it assumes the reader is a trained Windows tech and knows what backup mode is.  It is used by nearly all backup software when backing up a live system..
    ¯\_(ツ)_/¯

  • A question about Oracle 1g R2 Enterprise Edition license

    Dear all,
    I have a question about Oracle license and I would appreciate if you could kindly help me.
    I have installed an Oracle server (11g R2 Enterprise edition) on a linux virtual machine. The pc used for this purpose
    is my enterprise laptop (therefore a professional and not a personal Computer). However, I use the this Oracle Server
    only for learning purpose, that is, only for running the examples in my Oracle Press books (SQL, PL/SQL and some
    administration tasks) just for learning the stuff.
    There is absolutely no data related to my enterprise, stored or used on this server. Whenever I want to work with my
    enterprise data, I use the Oracle server of the enterprise which has of course the appropriate license. So as I said, I
    use this Enterprise server on the virtual machine only for running queries/programs in my Oracle Press books just for
    learning and I'm the sole person who uses this server (no remote connection for other users).
    The reason for which I needed to install this server on my PC was that our DBA couldn't provide a training environment
    for me with all required privileges and functionalities.
    Am I supposed to buy a license for this installed Enterprise server on my virtual machine?
    Thanks in advance,
    Dariyoosh

    drop.any wrote:
    From OTN license agreement:
    >
    LICENSE RIGHTS
    We grant you a nonexclusive, nontransferable limited license to use the programs only for the purpose of developing, testing, prototyping and demonstrating your application, and not for any other purpose. If you use the application you develop under this license for any internal data processing or for any commercial or production purposes, or you want to use the programs for any purpose other than as permitted under this agreement, you must obtain a production release version of the program by contacting us or an Oracle reseller to obtain the appropriate license. You acknowledge that we may not produce a production release version of the program and any development efforts undertaken by you are at your own risk. We may audit your use of the programs. Program documentation, if available, may accessed online at http://otn.oracle.com/docs.
    Ownership and Restrictions We retain all ownership and intellectual property rights in the programs. The programs may be installed on one computer only, and used by one person in the operating environment identified by us. You may make one copy of the programs for backup purposes.
    You may not:
    - use the programs for your own internal data processing or for any commercial or production purposes, or use the programs for any purpose except the development of your application;
    - use the application you develop with the programs for any internal data processing or commercial or production purposes without securing an appropriate license from us;
    - continue to develop your application after you have used it for any internal data processing, commercial or production purpose without securing an appropriate license from us, or an Oracle reseller;
    - remove or modify any program markings or any notice of our proprietary rights;
    - make the programs available in any manner to any third party;
    - use the programs to provide third party training;
    - assign this agreement or give or transfer the programs or an interest in them to another individual or entity; - cause or permit reverse engineering (unless required by law for interoperability), disassembly or decompilation of the programs;
    - disclose results of any program benchmark tests without our prior consent.
    >Hello again,
    Thank you both of you for your help. As it seems to me
    >
    We grant you a nonexclusive, nontransferable limited license to use the programs only for the purpose of developing, testing, prototyping and demonstrating your application, and not for any other purpose.
    >
    I think self training can be considered in this category, therefore I think there is no need to buy a license for that.
    Kind regards,
    Dariyoosh

Maybe you are looking for

  • Open Hub 3rd party tool - API not returning data table

    I am implementing a 3rd party tool to get data from BI using the Open Hub Service. I have my server running and the API functions are working somewhat, but I have two problems. When I get notified by BI (RSB_API_OHS_3RDPARTY_NOTIFY), the REQUESTID fi

  • This Is the Best Adsl Router

    The billion 7800n is an awsome Router for all,it`s a little technical but once understood this will help your connection to BT broadband, see some info in setting up SNR http://www.spaldwick.com/broadband/billion-7800n

  • BI Query Designer - Conditions

    I was wondering if anyone could help me with a problem I have got on a query I am trying to create using a condition. I have currently got the following: Rows: Sold To Party Key Figures: Order Count (A restricted Key Figure based on 0DOC_ITEMS) Order

  • When I go to a web page power point presentation saved as Adobe the first page loads then I keep getting error message:

    I have Adobe Acrobat Pro XI And its up to date. When I go to a web page Power point presentation saved as Adobe the first page loads then I keep getting error message: There was a problem reading this document (14) I've tried refreshing the download.

  • Info about MINI-SAP

    Hi all! I'm a new user of this forum, and I'm started now to have an interested for SAP and ABAP/4. Now I'm studing the ABAP/4 on guides on the network, but I need to try it! I have well known MINI-SAP reading many post on various forum online, but I