Project

General

Profile

Bug #4910

"Everyone" given special permissions in CIFS share

Added by Nick Card over 6 years ago. Updated almost 3 years ago.

Status:
Resolved
Priority:
Nice to have
Assignee:
John Hixson
Category:
OS
Severity:
New
Reason for Closing:
Reason for Blocked:
Needs QA:
Yes
Needs Doc:
Yes
Needs Merging:
Yes
Needs Automation:
No
Support Suite Ticket:
n/a
Hardware Configuration:
ChangeLog Required:
No

Description

When I create a new CIFS share, the "Everyone" account is given special permissions to "Delete subfolders and files". This means that, if you create a share, and you allow guest access, then anyone can delete all of your things. Even if you don't allow guest access, the permissions are still set that same way.

It's easy enough to fix this after-the-fact by changing the permissions, but it's kind of a pain when you've got a handful of shares, and if you miss one, all your data can be deleted by anyone.

CIFSbug.PNG (19.6 KB) CIFSbug.PNG Default permissions for "Everyone" showing bug. Nick Card, 05/01/2014 07:48 AM
787

Associated revisions

Revision 7a4c3974 (diff)
Added by John Hixson over 6 years ago

Remove "delete_child" from default acl for everyone Ticket: #4910

Revision 5b8861bc (diff)
Added by John Hixson over 6 years ago

Remove "delete_child" from default acl for everyone Ticket: #4910 Conflicts: gui/middleware/notifier.py

History

#2 Updated by John Hixson over 6 years ago

  • Status changed from Unscreened to Resolved

#3 Updated by Dru Lavigne almost 3 years ago

  • Target version set to Master - FreeNAS Nightlies

Also available in: Atom PDF