Folder Security

Application security
Current threats
human factors
Instant Messaging
Microsoft Exchange
Microsoft Windows
Secure Coding
SQL Server
We have a folder containing lots of confidential docs that supposedly accessible to all employees that should have read permission only. They should not be able to Print/Copy/SaveAs/E-Mail and do other docs stuff. Our IT staff had made the folder read only though people could still re-save the files elsewhere and print from there ... Any suggestion on how we can implement this security requirement? We're using Win2K3 server OS. Thanks in advance.

Answer Wiki

Thanks. We'll let you know when a new response is added.


I’m sure you can’t grant read permissions on anything and prevent any of the Print/Copy/SaveAs/E-Mail actions except you put your users in VERY restricted environment (e.g. a PC without writable media, e-mail and printer access). Unless you reserve a dedicated PCs for reading of the documents in question, the restrictions are really insane.



Discuss This Question: 8  Replies

There was an error processing your information. Please try again later.
Thanks. We'll let you know when a new response is added.
Send me notifications when members answer or reply to this question.
  • Cazulp
    There may be a number of ways to achieve most of what you want to do but they will take some work and cost. One option is converting all the documents to PDF so that you can set permissions to prevent Print/Copy/Save but probably not attaching. You may be able to solve the attaching problem by setting up the PDF resository so that the files can only be be opened in IE via an Adobe Active X control rather than in Adobe Reader itself. Another option is encrypting with EFS and only making the files available to authorized people.
    0 pointsBadges:
  • Amigus
    Windows Rights Management Services (RMS).
    0 pointsBadges:
  • Guardian
    Just of the top of my head, wjy don't you create a //ftp site and restrict all you want or give them a cretain level of access. Cause sometimes directory/folder encryption can be changed once the file is moved to another directory. Rgds Newton
    900 pointsBadges:
  • Paul144hart
    Two options - PDF with Digital Rights Management (DRM); is an umbrella term for the concepts and supporting technology needed to protect the ownership rights of print and digital publishers on the Web. Create a web portal, and use a viewer that has no capability for print/save/copy... -Paul
    0 pointsBadges:
  • KerryK
    Assumming you are using Microsoft Office 2003 perhaps you should look at Information Rights Management.
    0 pointsBadges:
  • ALVXSE87
    Hiya, Thanks everybody. You've all been a great help. BR, Zandgorgon
    0 pointsBadges:
  • Jcan123
    I would probably go for a solution where you display the documents in a web interface - that way you can also block the copy function by html code (and other functions).
    0 pointsBadges:
  • Jrerickson
    Keep in mind that no matter what DRM you use, the user can always screen shot what they are seeing and print/email/save that.
    0 pointsBadges:

Forgot Password

No problem! Submit your e-mail address below. We'll send you an e-mail containing your password.

Your password has been sent to:

To follow this tag...

There was an error processing your information. Please try again later.

Thanks! We'll email you when relevant content is added and updated.


Share this item with your network: