As I examin shares on win7 (controll panel shares)
ACL's require a full grant on Everyone// it's unclear what read and change mean...
as previous connections are made this resriction seem to be less strickt
what makes the shares ACL tricky to handle and test for security problems!!!!!
but everyone is rather LARGE:
"The Everyone group encompasses":
well everyone. That is, it includes all the built it users and groups that
come with Windows XP/win7 as well as any administrator defined users and groups.
It also includes the service and system accounts that are created and any anonymous
accounts that connect to the computer without providing any login credentials.
Lastly, it includes the Guest account.
as an acl grant is placed on a group of users(NOT individual users,but this is unmanagable) the statement seems ignored !!
Is the definition of an EVERYONE NOT IMPLICITELY SECURITY BREACH....
Relying on the file security restriction is an other matter.
The SHARED security is the first security protection setting it to everyone is killing the purpose
Where can I find more on this, links to more professional security setup please.
ACL's require a full grant on Everyone// it's unclear what read and change mean...
as previous connections are made this resriction seem to be less strickt
what makes the shares ACL tricky to handle and test for security problems!!!!!
but everyone is rather LARGE:
"The Everyone group encompasses":
well everyone. That is, it includes all the built it users and groups that
come with Windows XP/win7 as well as any administrator defined users and groups.
It also includes the service and system accounts that are created and any anonymous
accounts that connect to the computer without providing any login credentials.
Lastly, it includes the Guest account.
as an acl grant is placed on a group of users(NOT individual users,but this is unmanagable) the statement seems ignored !!
Is the definition of an EVERYONE NOT IMPLICITELY SECURITY BREACH....
Relying on the file security restriction is an other matter.
The SHARED security is the first security protection setting it to everyone is killing the purpose
Where can I find more on this, links to more professional security setup please.