Everyone Group

We have many folders that have the Everyone group with file permissions to particular folders.  All of our users are in the DOMAIN USERS group .... and they have access to these folders explicitly.  My question is that .... if a folder shows that the everyone group has all rights to a folder, does this mean everyone in the our active directory has access to the folder?  Thanks....hope this makes sense.
drummer1960Information Security OfficerAsked:
Who is Participating?
victornegriConnect With a Mentor Commented:
Yes. Everyone means Everyone. The Everyone group is a built-in group that you can't modify but it literally means Everyone (including guest users).
drummer1960Information Security OfficerAuthor Commented:
So I would need to remove it from the security permissions list...correct?  If I don't want all users to have access...
MikeKaneConnect With a Mentor Commented:
Yes, removing the everyone group and then specifying the correct groups and setting the correct rights is the way to help lock down the directory.  

An alternative is to make the SHare permissions set to everyone, then use NTFS on the folders to lock down the access.   Essentially, everyone can access the share, but only certain users can read/write to the folders in the share. ....   Just an alternative...  

Also, when you remove the Everyone group and add other groups, make sure you add the "System" group to the ACL and grant it Full Control. This will save you troubleshooting steps in the future when you receive errors from programs that need to access files and run as the local system account.
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.