Re: Specific folder permission only?
- From: Meinolf Weber [MVP-DS] <meiweb(nospam)@gmx.de>
- Date: Thu, 21 May 2009 20:46:33 +0000 (UTC)
Hello 7777,
When you have shares for your users or branches etc. configured, you should create your own security groups to configure NTFS permissions on the folders that fit for your needs. Do not work with "Everyone" or "Authenticated users" group when not all domain members should have access. That way you can prevent easy one account from accessing other folders and only give it the needed permissions.
Also do not use the domain guest group or the guest account. Domain guests have the same permissions as the domain users. Only the guest account is further restricted and disabled by default.
Best regards
Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
Thanks Isaac for your speedy reply, I totally appreciate it. I guess
I'm aiming to have a specific user to access only 1 folder that's
within our domain and just wanted to make sure this user doesn't have
access to any other folders/directories on our domain. Networking
isn't my expertise so I wasn't sure what the default permissions and
folder rights that the Domain Users group has or the supposed
direction to go. Would the Domain Guests be another route to take or
what is the difference between those?...do both of these groups have
no rights/permissions by default which appears would be good as my
initial novice guesstimate?
"Isaac Oben [MCITP,MCSE]" <isaac.oben@xxxxxxxxxxxxxxxx> wrote in
message news:C07DD9F9-F562-4A58-8BB3-7FFB248F8111@xxxxxxxxxxxxxxxx
Hello 7777,
Yes you can grant to a specific folder by going to that folder
security settings and add user in question. You can remove user from
Default Domain Users group but you must assign user to a new group
and mark as the primary group because the Domain Users group by
default is set as the primary group..But I will not advice you to
remove user from the Domain Users group... What exactly are you
trying to achieve?
--
Isaac Oben [MCTIP:EA, MCSE]
"7777" <NoSpam@xxxxxxxxxx> wrote in message
news:OuF$Lpa2JHA.4632@xxxxxxxxxxxxxxxxxxxxxxx
Hello, when creating a new windows domain user in active directory
is there a way to grant this new user account access to one specific
folder only and/or remove them or re-assign them from the default
'Domain Users' group to another Primary Group?
Thanks in advance.
.
- Follow-Ups:
- Re: Specific folder permission only?
- From: 7777
- Re: Specific folder permission only?
- References:
- Re: Specific folder permission only?
- From: 7777
- Re: Specific folder permission only?
- Prev by Date: Re: Windows 2000
- Next by Date: Re: How Best to Handle an Acquisition?
- Previous by thread: Re: Specific folder permission only?
- Next by thread: Re: Specific folder permission only?
- Index(es):
Relevant Pages
|
Loading