Mailing-List: contact cygwin-help@sourceware.cygnus.com; run by ezmlm
List-Subscribe: <mailto:cygwin-subscribe@sources.redhat.com>
List-Archive: <http://sources.redhat.com/ml/cygwin/>
List-Post: <mailto:cygwin@sources.redhat.com>
List-Help: <mailto:cygwin-help@sources.redhat.com>, <http://sources.redhat.com/ml/#faqs>
Sender: cygwin-owner@sources.redhat.com
Delivered-To: mailing list cygwin@sources.redhat.com
Message-ID: <3ADD9875.3162379F@ece.gatech.edu>
Date: Wed, 18 Apr 2001 09:36:53 -0400
From: "Charles S. Wilson" <cwilson@ece.gatech.edu>
X-Mailer: Mozilla 4.75 [en] (WinNT; U)
X-Accept-Language: en
MIME-Version: 1.0
To: Corinna Vinschen <cygwin@cygwin.com>
Subject: Re: ntsec environment variable
References: <005701c0c731$71e7de80$c4332041@campbell> <20010417135556.E12559@cygbert.vinschen.de> <001901c0c773$0fd99ca0$c4332041@campbell> <20010417214024.D15962@cygbert.vinschen.de> <000b01c0c7d7$8ae4cb40$c4332041@campbell> <20010418100247.K15962@cygbert.vinschen.de>
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit

Corinna Vinschen wrote:
> 
> That's the point. Users only can use chown if they have the user
> right "Restore files and directories". That right is only given to
> the groups "Administrators" and "Backup Operators" by default.
> That's ...similar... to Unix systems.
> 

I'd like to point out that granting the "Restore files and directories"
right to ordinary users defeats any security provided by windows NTFS. 
That right basically gives the user the ability to defeat any
permissions restrictions -- both from within cygwin and in normal
Windows usage.

--Chuck

--
Want to unsubscribe from this list?
Check out: http://cygwin.com/ml/#unsubscribe-simple

