Solved

Windows 2008 Share/NTFS permissions

Posted on 2015-01-03
7
233 Views
Last Modified: 2015-01-04
In previous versions of Windows servers, when it comes to permissions, I remember we used to give full control do domain users at the share level, then go to folders inside the share and give users specific NTFS permissions.

I am not sure if it is applied the same way in the newer versions, Windows 2008 and Windows 2012 ?

Any help will be very much appreciated.

Thanks
0
Comment
Question by:jskfan
  • 2
  • 2
  • 2
  • +1
7 Comments
 
LVL 68

Expert Comment

by:Qlemo
Comment Utility
No reason to change that practice.
0
 
LVL 23

Expert Comment

by:NVIT
Comment Utility
As Qlemo said.
Are you having certain problems?
0
 

Author Comment

by:jskfan
Comment Utility
OK... I just have seen some Admins applying permissions at the Share level , giving some users Contribute, some Owner, some Read....
I am not sure why ?
0
Better Security Awareness With Threat Intelligence

See how one of the leading financial services organizations uses Recorded Future as part of a holistic threat intelligence program to promote security awareness and proactively and efficiently identify threats.

 
LVL 68

Accepted Solution

by:
Qlemo earned 167 total points
Comment Utility
That is (still) bad practice. Permission control on filesystem level is more granular, easier to manage,...
0
 
LVL 23

Assisted Solution

by:NVIT
NVIT earned 166 total points
Comment Utility
0
 
LVL 53

Assisted Solution

by:Will Szymkowski
Will Szymkowski earned 167 total points
Comment Utility
As the others have already pointed out it is a bad practice. Reason why...
- management nightmare (you have to manage multiple permissions in different areas)
- Troubleshooting becomes a pain (someone could be full access on a folder level but not required shared permissions)
- Stated already "more granularity"

Will.
0
 

Author Closing Comment

by:jskfan
Comment Utility
Thank you Guys!
0

Featured Post

How to improve team productivity

Quip adds documents, spreadsheets, and tasklists to your Slack experience
- Elevate ideas to Quip docs
- Share Quip docs in Slack
- Get notified of changes to your docs
- Available on iOS/Android/Desktop/Web
- Online/Offline

Join & Write a Comment

Disabling the Directory Sync Service Account in Office 365 will stop directory synchronization from working.
Find out how to use Active Directory data for email signature management in Microsoft Exchange and Office 365.
This tutorial will walk an individual through locating and launching the BEUtility application to properly change the service account username and\or password in situation where it may be necessary or where the password has been inadvertently change…
This tutorial will walk an individual through the process of configuring basic necessities in order to use the 2010 version of Data Protection Manager. These include storage, agents, and protection jobs. Launch Data Protection Manager from the deskt…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now