Solved

Permissions question

Posted on 2007-04-03
4
171 Views
Last Modified: 2013-12-04
I have some software files residing in an NTFS share on our server - I'd like to restrict access to this share to everyone except a certain randomly changing group of people.

My goal is to create a user account for this purpose, assign certain share/ntfs permissions to the folder allowing only access to domain admins and the newly created user, meaning if somebody who is not a domain admin tries to access the folder they'll be prompted for a user name and password, they would then supply the details of the newly created account.

Please can somebody advise what share and ntfs permsissions I need to assign to the folder.
0
Comment
Question by:kestrel05
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
4 Comments
 
LVL 27

Accepted Solution

by:
michko earned 63 total points
ID: 18847257
You could do it that way and just assign full permissions to the domain admins and whatever permissions you wanted (full, read, modify, write) to the user id you created.  Problem I can see is you're going to be deleting and adding a new user id every time someone drops out of your "randomly changing group of people".

You may be better off creating a group (call it FolderShare, MyGroup, whatever) with the permissions you want to this folder.  You can then add and remove users from this group.  Then the people who have access can just get to it, while those who don't have access will be denied.

Link on setting user and group security:
http://technet2.microsoft.com/WindowsServer/en/library/740d097f-c7f8-448c-a70c-d75ac2b2c9961033.mspx?mfr=true

Link on applying or modifying permissions:
http://technet2.microsoft.com/WindowsServer/en/library/1687ef1d-b382-49c7-b184-a4cc888be5251033.mspx?mfr=true
0
 
LVL 3

Assisted Solution

by:odomok07
odomok07 earned 62 total points
ID: 18991930
It is always better to create a group and assign rights to that group.  Than it is to assign rights to users.

Create a share on the folders that you wish to share.  Create a group that can access that share.  Assign the rights that you wish to that group.  Add and remove users as they come and go to that group that you have created and assigned rights to.
0
 
LVL 1

Expert Comment

by:Computer101
ID: 21185791
Forced accept.

Computer101
EE Admin
0

Featured Post

Free NetCrunch network monitor licenses!

Only on Experts-Exchange: Sign-up for a free-trial and we'll send you your permanent license!

Here is what you get: 30 Nodes | Unlimited Sensors | No Time Restrictions | Absolutely FREE!

Act now. This offer ends July 14, 2017.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Many people tend to confuse the function of a virus with the one of adware, this misunderstanding of the basic of what each software is and how it operates causes users and organizations to take the wrong security measures that would protect them ag…
David Varnum recently wrote up his impressions of PRTG, based on a presentation by my colleague Christian at Tech Field Day at VMworld in Barcelona. Thanks David, for your detailed and honest evaluation!
There's a multitude of different network monitoring solutions out there, and you're probably wondering what makes NetCrunch so special. It's completely agentless, but does let you create an agent, if you desire. It offers powerful scalability …
Michael from AdRem Software outlines event notifications and Automatic Corrective Actions in network monitoring. Automatic Corrective Actions are scripts, which can automatically run upon discovery of a certain undesirable condition in your network.…

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question