Re: ACL inheritance, group supervisors, rwX access

2004-10-26 Thread martin f krafft
also sprach Marc Schiffbauer <[EMAIL PROTECTED]> [2004.10.27.0037 +0200]: > That would indeed be a nice feature. How can I drop users CAPs on > login? Are there such things as user capabilities without SELinux or GrSecurity or RSBAC? -- Please do not CC me when replying to lists; I read them!

Re: ACL inheritance, group supervisors, rwX access

2004-10-26 Thread Marc Schiffbauer
* martin f krafft schrieb am 26.10.04 um 23:04 Uhr: > also sprach Marc Schiffbauer <[EMAIL PROTECTED]> [2004.10.26.2233 +0200]: > > Uups. Mea culpa. But I think this will not make it better in your > > case. If someone creates a file he can do whatever he wants with > > that file including removing

Re: ACL inheritance, group supervisors, rwX access

2004-10-26 Thread martin f krafft
also sprach Marc Schiffbauer <[EMAIL PROTECTED]> [2004.10.26.2233 +0200]: > Uups. Mea culpa. But I think this will not make it better in your > case. If someone creates a file he can do whatever he wants with > that file including removing your supervisor from the files ACL. The merit is arguable,

Re: ACL inheritance, group supervisors, rwX access

2004-10-26 Thread Marc Schiffbauer
* martin f krafft schrieb am 26.10.04 um 20:18 Uhr: > also sprach Marc Schiffbauer <[EMAIL PROTECTED]> [2004.10.26.1944 +0200]: > > AFAIK what you want to do is not possible because Samba does not > > support NT ACLs yet. With NT ACLs you could say "Students are not > > allowed to change ACLs" and

Re: ACL inheritance, group supervisors, rwX access

2004-10-26 Thread martin f krafft
also sprach Marc Schiffbauer <[EMAIL PROTECTED]> [2004.10.26.1944 +0200]: > AFAIK what you want to do is not possible because Samba does not > support NT ACLs yet. With NT ACLs you could say "Students are not > allowed to change ACLs" and you were done. Uh, there is no samba. This is all Linux and

Re: ACL inheritance, group supervisors, rwX access

2004-10-26 Thread Marc Schiffbauer
* martin f krafft schrieb am 26.10.04 um 16:21 Uhr: > If you are good with POSIX ACLs, I would appreciate if you could > take a look at > > http://people.debian.org/%7Eterpstra/message/20041026.105727.f688af8f.en.html > > Post your comments here, if you wish, I shall funnel the solution > and i

ACL inheritance, group supervisors, rwX access

2004-10-26 Thread martin f krafft
If you are good with POSIX ACLs, I would appreciate if you could take a look at http://people.debian.org/%7Eterpstra/message/20041026.105727.f688af8f.en.html Post your comments here, if you wish, I shall funnel the solution and important points over to the other list... (unless you tell me not