Live Chat & Podcast at 1:00PM Eastern on Sunday!
There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
Windows Server
Tag Cloud
access acer asus bios bsod computer crash desktop driver drivers error ethernet excel freeze games gaming hard drive hardware hdmi internet laptop malware memory monitor motherboard music netgear network printer problem ram registry router slow software sound trojan ubuntu 11.10 uninstall usb video virus vista wifi windows windows 7 windows 7 32 bit windows 7 64 bit windows xp wireless
Search
Search for:
Tech Support Guy Forums > Operating Systems > Windows Server >
Windows SBS 2008 permissions

Reply  
Thread Tools
noblelord's Avatar
Member with 109 posts.
 
Join Date: May 2009
Location: UK
Experience: Intermediate
08-Feb-2010, 11:33 AM #1
Windows SBS 2008 permissions
Hullo all,

Not been here for a while - though I return with a question of my own. Basically, I need to find a quick and easy way to stop my users accidentally deleting files. I'm running Windows SBS 2008 and they are all in the same usergroup.

Now I know I can easily modify the permissions of each folder/tree so that they cannot be deleted/moved/renamed. The problem is that I don't wish for my users to be prohibited from deleting *all* of them, however it would be far too cumbersome for me to go through and pick each directory manually and alter its permissions.

Let me outline below - everything in red is a directory I do not want users to be able to delete, move, rename, cut or copy.

s://projects/financial management/united kingdom/2009 individual project 1/project info

So I cannot simply alter the permissions of the top level directory and all sub-directories because this will not enable them to work with the very last level of directories. The above filepath is an outline - some would be much longer, some would be shorter. Ideally I'm looking for a quicker way to accomplish this in SBS 2008 or a utility that can manage this for me running on the server. Basically I want to stop them from deleting entire projects/categories, whilst still be able to manage the very last level of sub-directories which contain their own projects data.

Do let me know if that is unclear (probably will be!).
__________________
- Age quod agis -
aasimenator's Avatar
Computer Specs
Member with 436 posts.
 
Join Date: Dec 2008
Location: India
Experience: Advanced
08-Feb-2010, 01:22 PM #2
You can try doing regular backup's, there is no other way I can think of that would work in your situation.
StumpedTechy's Avatar
Computer Specs
Distinguished Member with 7,233 posts.
 
Join Date: Jul 2004
Location: Central Florida
Experience: Advanced
08-Feb-2010, 01:56 PM #3
I would do a combination of shadow copy, regular backups and then I would also go as far as doing something along the lines of

s://projects/financial management/united kingdom/2009 individual project 1 - unable to be deleted - read access
s://projects/financial management/united kingdom/2009 individual project 1 modify - make this be the place they put the deletable information for project 1.

This would give one dir of things they can't touch but to look at and one they can save to and delete items as they see fit. Its not really a good thing to get into micromanaging shares you'll spend more time trying to figure things out than working on more important problems.
__________________
What? This doohicky goes in that thingymabob?

The Technical Hitch - Tikuf keeps me employed!
noblelord's Avatar
Member with 109 posts.
 
Join Date: May 2009
Location: UK
Experience: Intermediate
08-Feb-2010, 02:16 PM #4
Thanks - I do regular backups to RDX drives along with online backups, but there is nothing worse when someone insists a file has gone missing and they didn't delete it. Most of the time they've done something stupid like selected a lot of files but accidentally moved them elsewhere.

I agree about the micromanaging - we have hundreds of projects and I don't want to go through and edit the permissions for each shared folder. Would take far too long.

Thanks for your input.
__________________
- Age quod agis -
aasimenator's Avatar
Computer Specs
Member with 436 posts.
 
Join Date: Dec 2008
Location: India
Experience: Advanced
08-Feb-2010, 02:19 PM #5
You can enable Audit on Object access on your server. so when someone deletes a file a event will be created & you can then show that person that they have done it & you have a proof.
Reply

THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Search Tech Support Guy

Find the solution to your
computer problem!




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.
Thread Tools



Facebook Facebook Twitter Twitter TechGuy.tv TechGuy.tv Mobile TSG Mobile
You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -4. The time now is 09:11 PM.
Copyright © 1996 - 2011 TechGuy, Inc. All rights reserved.

Powered by Cermak Technologies, Inc.