ACL bug in debian sarge?

From: Peter Pfannenschmid (lists_at_binarus.de)
Date: 11/07/05

  • Next message: Antonio Paiva: "Suspend to disk"
    Date: Mon, 07 Nov 2005 21:36:46 +0100
    To: debian-user@lists.debian.org
    
    

    Hello,

    I have seen a very strange thing when using ACLs (OS is debian sarge, FS
    is ext3):

    fenrir:/home/iso-img/DCMUPD# dir test
    -r--rw----+ 1 Administrator users 0 2005-11-07 20:52 test

    Please note that the owner of the file "test", namely the user
    "Administrator", does not have write permission on this file. But:

    fenrir:/home/iso-img/DCMUPD# getfacl test
    # file: test
    # owner: Administrator
    # group: users
    user::r--
    user:Administrator:rwx #effective:rw-
    user:julia:r-x #effective:r--
    group::rwx #effective:rw-
    mask::rw-
    other::---

    This tells us that the user Administrator has write permission on this
    file.

    According to the man page of setfacl and getfacl, the manipulation of
    the user permission changes the ACL entries also and vice versa. This
    is obviously not the case when looking at the above example, or I have
    misunderstood something.

    Could anyone explain what is going on there? This sucks really when
    using ACLs with samba. Did I misunderstand something?

    Thank you very much,

    Peter

    -- 
    To UNSUBSCRIBE, email to debian-user-REQUEST@lists.debian.org 
    with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
    

  • Next message: Antonio Paiva: "Suspend to disk"

    Relevant Pages

    • SBS Backup error
      ... You may not have permission to open the file, ... missing or damaged. ... Please contact the owner or administrator. ...
      (microsoft.public.windows.server.sbs)
    • Re: Administrator unable to set permissions
      ... a new user I created does not have write/modify permission to ... Since administrator has only read permission, ... > regain control on files, even if I'm the owner. ...
      (microsoft.public.win2000.security)
    • Re: Unlocking private folders in XP after an OS reinstall
      ... The owner controls how permissions are set on the object and to whom permissions are granted. ... the Administrators group is given the Take ownership of files or other objects user right. ... The current owner can grant the Take ownership permission to another user, allowing that user to take ownership at any time. ... An administrator can take ownership. ...
      (microsoft.public.windowsxp.help_and_support)
    • Re: Synchronizing Desktop and laptop
      ... The first thing I'd look at is: Who is on record as the Owner of the 2 ... even want to deal with you if you're not an administrator. ... terry b. ... > message that says something like "you do not have permission to access ...
      (microsoft.public.windowsxp.basics)
    • Re: Unable to prevent OU deletion by Domain Admins?
      ... This posting is provided "AS IS" with no warranties, and confers no rights. ... >>>> It is even worse when Microsoft's own guidelines for parsing ACLs ... >>>> that DENY ACLs trump any allow ACLs ... >>> the list of permission entries in the DACL. ...
      (microsoft.public.win2000.active_directory)