You want to turn on the cifs.perm_check_use_gid option. Thay way you will get normal UNIX group permission checking semantics. The entry in the security FAQ is intended to explain why that is not the default. Let us know if you still have problems.
Mark
-----Original Message----- From: Elizabeth Schwartz [mailto:eschwart@genuity.net] Sent: Friday, June 09, 2000 12:55 PM To: Muhlestein, Mark Cc: eschwart@genuity.net; toasters@mathworks.com Subject: RE: Unix group permissiosn and NT access on a filer
Thanks!
IT sounds like what we need is a "cred-GID" am I reading this right?
I want to give an NT user the right to access files from his NT box that members of his unix group can access on the Unix side, on a filer set to unix file perms
At 11:21 AM 6/9/00 -0700, mark.muhlestein@netapp.com wrote:
This is controlled via the option cifs.perm_check_use_gid. See
http://now.netapp.com/NOW/knowledge/docs/olio/guides/53_troub
leshooting/faq
.shtm l#anchor1392048
"My CIFS clients are seeing strange group access with
UNIX-style security
files"
Mark Muhlestein -- mmm@netapp.com
-----Original Message----- From: Elizabeth Schwartz [mailto:eschwart@genuity.net] Sent: Friday, June 09, 2000 8:19 AM To: toasters@mathworks.com Subject: Unix group permissiosn and NT access on a filer
Please forgive any NT terminology mangling, I'm a Unix person:
We've got a filer that is set up as a Unix filesystem (as
opposed to
multiprotocol.) Our NT users access their home directories as NT shares on this filer. Their NT login names match their Unix user id's.
On the unix side, I created a group and made a group-writeable directory that is not readable to others. When the NT users log
into our unix
machine, they can write files in this directory. When they access this directory from the Unix side, only the owner can write files.
Is this fixable? Without making dramatic changes to the filer? (I do have enough space to make a small extra partition if I really had to) -- Elizabeth Schwartz 781-262-6565 Unix System Administrator eschwart@bbnplanet.com Genuity, Inc
-- Elizabeth Schwartz 781-262-6565 Unix System Administrator eschwart@bbnplanet.com Genuity, Inc