X-Recipient: archive-cygwin AT delorie DOT com DomainKey-Signature: a=rsa-sha1; c=nofws; d=sourceware.org; h=list-id :list-unsubscribe:list-subscribe:list-archive:list-post :list-help:sender:date:from:to:subject:message-id:reply-to :references:mime-version:content-type:in-reply-to; q=dns; s= default; b=upWgJoQ91E9o7lEbDEacSgejCCYUi0hJGaJHoIjfliwDcMh1KLE1/ UMyHRCj4krrHrsLE1nV94c7zZnnNqCe3sPN3UGny8n2TwpP5xJJ4qx15p2csJirl RS3zSq8LvIh1SRz34zjta8kuTcJzWhJC/46XC4BD9j+1mKyy+KBE2Y= DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=sourceware.org; h=list-id :list-unsubscribe:list-subscribe:list-archive:list-post :list-help:sender:date:from:to:subject:message-id:reply-to :references:mime-version:content-type:in-reply-to; s=default; bh=9ikTeu2/ILFPMlnYRJcdlcxtXOU=; b=G8H1+hcDKLOaDTCXmAajtcCuBR4i 5IxppjJb2i9hI2gHi1JEU+pDMCfy73+cvUf3Vi7K+Fi86lBdJv3Ilts0tCHkmCXz SlVzsGuNhTJieHrky3DTXgLg1DrLmagal7tkfBQ1jkTCwqobjLIOvXzAt/Mc7z3s sTt+obutzAkYwPQ= Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm List-Id: List-Subscribe: List-Archive: List-Post: List-Help: , Sender: cygwin-owner AT cygwin DOT com Mail-Followup-To: cygwin AT cygwin DOT com Delivered-To: mailing list cygwin AT cygwin DOT com Authentication-Results: sourceware.org; auth=none X-Virus-Found: No X-Spam-SWARE-Status: No, score=-5.2 required=5.0 tests=AWL,BAYES_05 autolearn=ham version=3.3.2 X-HELO: calimero.vinschen.de Date: Thu, 26 Feb 2015 21:57:36 +0100 From: Corinna Vinschen To: cygwin AT cygwin DOT com Subject: Re: Too Many Permissions Stripped In 1.7.35? Message-ID: <20150226205736.GA10870@calimero.vinschen.de> Reply-To: cygwin AT cygwin DOT com Mail-Followup-To: cygwin AT cygwin DOT com References: <87twy8cv4k DOT fsf AT Rainer DOT invalid> <20150226202836 DOT GB10024 AT calimero DOT vinschen DOT de> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="y0ulUmNC+osPPQO6" Content-Disposition: inline In-Reply-To: User-Agent: Mutt/1.5.23 (2014-03-12) --y0ulUmNC+osPPQO6 Content-Type: text/plain; charset=utf-8 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Feb 26 15:51, Bryan Berns wrote: > > That's not really a goal. The SYSTEM permissions are kind of useless > > anyway, given that SYSTEM has permissions to read and write all files > > anyway. I don't see that a rule to add SYSTEM permissions to all files > > accomplishes anything which isn't already available anyway. >=20 > I don't think this is true; see below when running as the system account: >=20 > V:\>echo %USERNAME% > BERNS-WINDOWS$ > V:\>icacls V:\Test > V:\Test DOMAIN\Administrator:(OI)(CI)(F) > Successfully processed 1 files; Failed processing 0 files > V:\>cd V:\Test > Access is denied. > V:\> You just have to enable the SeBackupName and SeRestoreName privs. Try in Cygwin. It does that automatically. For cases where you need to stick to the Windows ACLs, use noacl mounts. Corinna --=20 Corinna Vinschen Please, send mails regarding Cygwin to Cygwin Maintainer cygwin AT cygwin DOT com Red Hat --y0ulUmNC+osPPQO6 Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQIcBAEBAgAGBQJU74jAAAoJEPU2Bp2uRE+gxQEP/1mj1fnge1FWfp+2beFMq2ht s1U5LuusQK1lemabNRdswTMiCWaVWbZVPT+hd8aGFavxo9Epoau7m1lyrdXr1LFH xP7cGtr3r7RznrtYbg9Gxn564TFpoXGQilk/g3MMmz3vO4dcaRkMMGmUQuLD+IVu 6mnonlATmTU5tQuXAPSfeZb1fNyfQKxACTDn8wtqxjywgLflaCMHVGQFK+Xg99O1 yp0rqDBCy6Yb7Plpyus+pgED8HtCFr50nmw3bBPzWJd7/FlZitw229O6UooL5a0d 4BrPPTzc8vY5NIu42NRP2xGpf3t3iGL9FfzK78zxt2UATp0z+XSPPyXFRX6JTAd5 25+G7f3h2Y6kXBno82pqArcN4M/d/lViCOk9eGD+MbHPrt+2eEiQUm7bAjCiYaKw 4NU2oeUSBibHRHoOLXVQiLK0sT4ks17mAidGUDiT4ZgrcaV7ecbtlNNfwiznseLr M4Ai0TZtucMEUTUplGLRo5w1VoRh9PS7QXxdIvkGW0OweFe1xMlsRe4pcOOKUdTn 6zEro3Rh7ujsmnPpcK3i61fQHH1/YcPK6bVS7cyYQxNs3NGU+LHwjENlMY5uxfmt cx0dDcYbB8QsZaX6zSpvpgvgzseFg1avkMwlxwfIfLA6iqGd38bgiAJMh1u9FVfB +xqHwhpi6kvuHbIy/7GS =r4wK -----END PGP SIGNATURE----- --y0ulUmNC+osPPQO6--