theniteowl
Programmer
Hi All,
This is kind of basic but I can see several ways to do this and want to know what is the best approach.
I want to share out a set of folders on the server with varied levels of access to them.
MainFolder
Documentation
Users
User1
User2
User3
SharedResources
MainFolder is the top level share and should be viewable by all but only the admin group will have rights to create/delete/etc.
All users should have the ability to see and read documents in the Documentation and SharedResources folders.
Domain level groups will exist for each Userx folder. In these folders only the admins and the group corresponding to that folder will have access. Others should not be able to read any content within those folders.
Admins will have rights to all folders from Main on down.
The current configuration gives the Everyone group the ability to browse/read/execute through the folders and by default the rights propogate to the share folder and down.
I can setup specific folders for access by the individual domain groups but wonder the best way of restricting access to the sub folders as they propogate down.
Should I stop them from propogating or should I apply specific restrictions where required?
At my age I still learn something new every day, but I forget two others.
This is kind of basic but I can see several ways to do this and want to know what is the best approach.
I want to share out a set of folders on the server with varied levels of access to them.
MainFolder
Documentation
Users
User1
User2
User3
SharedResources
MainFolder is the top level share and should be viewable by all but only the admin group will have rights to create/delete/etc.
All users should have the ability to see and read documents in the Documentation and SharedResources folders.
Domain level groups will exist for each Userx folder. In these folders only the admins and the group corresponding to that folder will have access. Others should not be able to read any content within those folders.
Admins will have rights to all folders from Main on down.
The current configuration gives the Everyone group the ability to browse/read/execute through the folders and by default the rights propogate to the share folder and down.
I can setup specific folders for access by the individual domain groups but wonder the best way of restricting access to the sub folders as they propogate down.
Should I stop them from propogating or should I apply specific restrictions where required?
At my age I still learn something new every day, but I forget two others.