Question

  Asked: Aug 5 2005   6:02 AM GMT
  Asked by: ITAudit


Shares Baseline Security Information


Security management, Auditing, Security products, Security, Platform Security, vulnerability management, patching, configuration, PEN testing, Vulnerability Assessment & Audit

Hello,

I use the Microsoft Baseline Security Analyser 2.0 to retrive information about shares in some local servers.

I can not understand the diference between the information give in the report, about authorizations in the column Share ACL and Directory ACL.

If some one can help me,

Thank you
PPG

Subscribe to Alerts! Get questions and answers delivered to your Inbox.


E-mail me updates on this question



   SUBSCRIBE

hidden modal window

Answer Wiki (Improve, edit or add to this answer)


 RATE THIS ANSWER
0
Click to Vote:
  •   0
  •  0



Share ACL refers to who has permission to connect to a given share over the network - and is common to ALL Windows (and even DOS) file servers, as well as workstations with FAT16 and FAT32 file systems.

Directory ACL applies to the permissions specified in the NTFS file system, which does NOT exist on systems without NTFS.

It is a commonly observed problem for example to see someone with the ability to connect to a given shared folder, who is unable to browse the folder once connected. The Share ACL says that they can get there, but the Directory ACL says that they can't.

Clear enough?

Bob
  • AddThis Social Bookmark Button

Browse more Questions and Answers on Security and DataCenter.

Looking for relevant Security Whitepapers? Visit the SearchSecurity.com Research Library.


Discuss This Answer


You must be logged-in to discuss a question. Log-in/Register

ITAudit  |   Aug 5 2005  1:34PM GMT

Thank you its clear.

Best regards,

PPG