The UNIX and Linux Forums  

Go Back   The UNIX and Linux Forums > Top Forums > UNIX for Advanced & Expert Users
.
google unix.com



UNIX for Advanced & Expert Users Expert-to-Expert. Learn advanced UNIX, UNIX commands, Linux, Operating Systems, System Administration, Programming, Shell, Shell Scripts, Solaris, Linux, HP-UX, AIX, OS X, BSD.

More UNIX and Linux Forum Topics You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
User home folder permissions catch-22, help! EugeneG UNIX for Dummies Questions & Answers 3 07-17-2007 10:11 AM
Can I prevent a user from changing the permissions on their home directory. DanL UNIX for Dummies Questions & Answers 2 08-29-2006 01:56 PM
permissions of a directory smehra UNIX for Dummies Questions & Answers 3 06-04-2006 11:32 AM
determine owner directory permissions from within the directory Sniper Pixie Shell Programming and Scripting 4 03-07-2006 05:06 PM
Reset Home Directory Permissions punkrockguy318 UNIX for Dummies Questions & Answers 5 04-02-2004 02:50 AM

Closed Thread
English Japanese Spanish French German Portuguese Italian Dutch Swedish Russian Norwegian Hungarian Hebrew Danish Bulgarian Greek Powered by Powered by Google
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
  #1 (permalink)  
Old 02-25-2009
a_artha a_artha is offline
Registered User
  
 

Join Date: Jul 2008
Posts: 5
Home Directory Permissions

My users home directory located in a RHEL 5.0 nfs server.

Client is ubuntu 8.1 using NIS for authntication anf NFS for automounting
home Directory on the client side.

I set 700 to the users home directory.

My problem here is some of the users change the mode, which result in leak of data.

Is there any way to not to change the permissions of home directory other than root
  #2 (permalink)  
Old 02-25-2009
frozentin frozentin is offline
Registered User
  
 

Join Date: May 2008
Location: Vienna, VA + Bombay, India
Posts: 109
The user owns their home directory, hence they can change the modes as per their needs.

One way to remedy this is to run a periodic QA kind of script that reports on the users' home directories that are "world-readable/writable". We do this in our environment about once a quarter and send this out to the respective team managers. The onus then shifts to the managers of the application teams to ensure that their team members follow our recommended guidelines. This also helps us from an audit perspective; less last minute remediations.

Last edited by frozentin; 02-25-2009 at 01:58 PM.. Reason: typos
  #3 (permalink)  
Old 03-02-2009
a_artha a_artha is offline
Registered User
  
 

Join Date: Jul 2008
Posts: 5
I solved my problem

soln

mount the home directory partion with acl option.

then change the directory owner as root
Then Change mod to 700

Use the follwing command setfacl to give permission to user.

setfacl -m u:username:rwx foldername

check with getfacl
Closed Thread

Bookmarks

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT -4. The time now is 05:48 AM.


Powered by: vBulletin, Copyright ©2000 - 2006, Jelsoft Enterprises Limited. Language Translations Powered by .
vBCredits v1.4 Copyright ©2007 - 2008, PixelFX Studios
The UNIX and Linux Forums Content Copyright ©1993-2009. All Rights Reserved.Ad Management by RedTyger

Content Relevant URLs by vBSEO 3.2.0