[Last Call] Learn how to a build a cloud-first strategyRegister Now


Netowork File Permissions

Posted on 2007-10-17
Medium Priority
Last Modified: 2010-03-17
How does one make permissions to a file read-only for everyone except the Owner/Creator of a file?
Question by:deh5
  • 2
LVL 16

Expert Comment

ID: 20095531

Right click on the file, select Properties, click the Security Tab, then Add a group that contains Everyone.  I like Authenticated users.  Click OK to get back to the Security box, highlight the newly added group and make sure only Read and Execute and Read are the only boxes checked.  Click OK.


Author Comment

ID: 20096236
Thank you for responding.

I did do what you said and wasn't able open the file as the specified group that had Read and Execute and Read permissions.  Would there be a time lag for some reason, because it started working later. (Although, I did have someone else look at it and he couldnt remember what he did if anything to change it.)

I had added the group Creator/Owner with full control on Subfolders and files only and the another group that I wanted to have read access  with Traverse Folder / Execute File, List Folder / Read Data, Read Attributes, Read Extended Attributes, Create Files / Write Data, Create Folders / Append Data and Read Permissions on This folder, subfolders and files. I wanted it set up so users could create and edit their own files and folders in this directory but only read others' document in the group. I want to be able to do this again that is why I am asking even though it works the way I want it to now. I cant see any difference in the settings from when I first set it up. Thanks.
LVL 16

Accepted Solution

2PiFL earned 200 total points
ID: 20096366

I'm working on the same problem - Group permissions take 24 hours to "take effect" (on my network) but if I assign individual users (instead of groups) they take effect immediately.  

My work around is to add both the individual user and the group to the file permissions then the next day I delete the users.

Featured Post

Free recovery tool for Microsoft Active Directory

Veeam Explorer for Microsoft Active Directory provides fast and reliable object-level recovery for Active Directory from a single-pass, agentless backup or storage snapshot — without the need to restore an entire virtual machine or use third-party tools.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A hard and fast method for reducing Active Directory Administrators members.
How to deal with a specific error when using the Enable-RemoteMailbox cmdlet to create a mailbox in the cloud-based service, for an existing user in an on-premises Active Directory.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
Sometimes it takes a new vantage point, apart from our everyday security practices, to truly see our Active Directory (AD) vulnerabilities. We get used to implementing the same techniques and checking the same areas for a breach. This pattern can re…

830 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question