222
OES 2 SP3: Planning and Implementation Guide
When an NCP volume is created on a Linux POSIX or NSS volume, some of the behavior described
above is modified. For more information, see the
OES 2 SP3: NCP Server for Linux Administration
Guide
, particularly the “
NCP on Linux Security
” section.
Default accessibility
Users have permissions to see most of the
file system.
The contents of a few directories, such as
the
/root
home directory, can only be
viewed by the
root
user.
Some system configuration files can be
read by everyone, but the most critical files,
such as
/etc/fstab
, can only be read
and modified by
root
.
Users can see only the
directories and files for which
they are trustees (or members of
a group that is a trustee).
Home directories—an
example of default
accessibility
By default, all users can see the names of
directories and files in home directories.
During LUM installation, you can specify
that newly created home directories will be
private.
For more information on making existing
home directories private, see
Section 17.4.2, “Providing a Private Work
Directory,” on page 194
.
By default, only the system
administrator and the home
directory owner can see a home
directory. Files in the directory are
secure.
If users want to share files with
others, they can grant trustee
assignments to the individual
files, or they can create a shared
subdirectory and assign trustees
to it.
Inheritance from
parents
Nothing is inherited.
Granting permission to a directory or file
affects only the directory or file.
Rights are inherited in all child
subdirectories and files unless
specifically reassigned.
A trustee assignment can
potentially give a user rights to a
large number of subdirectories
and files.
Privacy
Because users have permissions to see
most of the file system for reasons stated
above, most directories and files are only
private when you make them private.
Directories and files are private
by default.
Subdirectory and file
visibility
Permissions granted to a file or directory
apply to only the file or directory. Users
can't see parent directories along the path
up to the root unless permissions are
granted (by setting the UID, GID, and mode
bits) for each parent.
After permissions are granted, users can
see the entire contents (subdirectories and
files) of each directory in the path.
When users are given a trustee
assignment to a file or directory,
they can automatically see each
parent directory along the path up
to the root. However, users can’t
see the contents of those
directories, just the path to where
they have rights.
Feature
POSIX / Linux
Novell Trustee Model on OES 2
Содержание OPEN ENTERPRISE SERVER - CONVERSION GUIDE 12-2010
Страница 12: ...12 OES 2 SP3 Planning and Implementation Guide...
Страница 24: ...24 OES 2 SP3 Planning and Implementation Guide...
Страница 50: ...50 OES 2 SP3 Planning and Implementation Guide...
Страница 74: ...74 OES 2 SP3 Planning and Implementation Guide...
Страница 78: ...78 OES 2 SP3 Planning and Implementation Guide...
Страница 80: ...80 OES 2 SP3 Planning and Implementation Guide...
Страница 96: ...96 OES 2 SP3 Planning and Implementation Guide...
Страница 146: ...146 OES 2 SP3 Planning and Implementation Guide...
Страница 176: ...176 OES 2 SP3 Planning and Implementation Guide...
Страница 210: ...210 OES 2 SP3 Planning and Implementation Guide...
Страница 218: ...218 OES 2 SP3 Planning and Implementation Guide...
Страница 226: ...226 OES 2 SP3 Planning and Implementation Guide...
Страница 234: ...234 OES 2 SP3 Planning and Implementation Guide...
Страница 236: ...236 OES 2 SP3 Planning and Implementation Guide...
Страница 244: ...244 OES 2 SP3 Planning and Implementation Guide...
Страница 246: ...246 OES 2 SP3 Planning and Implementation Guide...
Страница 250: ...250 OES 2 SP3 Planning and Implementation Guide...
Страница 254: ...254 OES 2 SP3 Planning and Implementation Guide...
Страница 258: ...258 OES 2 SP3 Planning and Implementation Guide...
Страница 284: ...284 OES 2 SP3 Planning and Implementation Guide...
Страница 286: ...286 OES 2 SP3 Planning and Implementation Guide...
Страница 294: ...294 OES 2 SP3 Planning and Implementation Guide...