0 pts.
 File permissions on NAS shared folders
Good day to all! I would like some information on best practices for a NAS file server specifically regarding file permissions. Currently, anyone who has access to a folder at my company can delete any item in that folder, regardless of who created the item. I personally feel this is incorrect but I am meeting with great resistance getting this simple delete permission removed. Any information anyone can give would be of great help. We currently use departmental, application, and company-wide shares that are mapped on login. Thanks again for any help provided!!

Software/Hardware used:
ASKED: February 15, 2006  6:30 PM
UPDATED: May 25, 2012  11:56 AM

Answer Wiki:
This seems to be more of a policy question than a technical one. From a best practices standpoint, the rule of "least privilege" seems pretty straightforward. Users in certain divisions, business groups and organizations should only have rights to those shares. Beyond that, the ability to create, delete, modify and so forth, should be determined by business and regulatory policy. Is your business required to archive documents? Respond to inquiries or legal disclosures? If so, there should be an overall policy determined by management, not the IT group, to determine what can be deleted, by whom and under what circumstances. If I were in your shoes, this would trouble me greatly. I would certain discuss this with my management. At the very least, I would make a record of notifying management, and save it - just in case someone decides to hold me accountable.
Last Wiki Answer Submitted:  February 16, 2006  1:44 pm  by  Klewis   0 pts.
All Answer Wiki Contributors:  Klewis   0 pts.
To see all answers submitted to the Answer Wiki: View Answer History.


Discuss This Question:
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _