Date: Wed, 27 Nov 2013 17:17:41 +0100 From: Harald Schmalzbauer <h.schmalzbauer@omnilan.de> To: Julian Elischer <julian@freebsd.org> Cc: freebsd-current@freebsd.org Subject: Re: Feature request: sticky bit inheritance Message-ID: <52961B25.3020109@omnilan.de> In-Reply-To: <52960DB5.3090209@freebsd.org> References: <5295DFAD.5070402@omnilan.de> <52960DB5.3090209@freebsd.org>
next in thread | previous in thread | raw e-mail | index | archive | help
This is an OpenPGP/MIME signed message (RFC 2440 and 3156) --------------enig7BB3F8551529996BE7A1F7A5 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable Bez=C3=BCglich Julian Elischer's Nachricht vom 27.11.2013 16:20 (localti= me): > On 11/27/13, 8:03 PM, Harald Schmalzbauer wrote: >> Hello, >> >> ever since I took a FreeBSD machine into production, acting as any kin= d >> of file server, I have to work arround the problem, that write access = to >> a directory implies unlinking (deleting) directory contents. > not sure I fully understand what you mean by that.. > Do you mean write access implies delete access? yes.. > > This can be modified with the nounlink flag. The uunlink flags also prohibits the owner to delete his files as far as I know. I want to prohibt users from deleting =E2=80=9Cforeign=E2=80=9D f= iles, even if the user has write access to the parent directory (and I wanted to explain that I don't understand why anybody would want that a user with write access to a directory can delete files on which the user doesn't have write access). The sticky bit exactly does what I need (and should be the default behaviour in my opinion). But my problem is that the stick bit must be added to each single directory after creation, it's not inherited. I'd need every child directory of directories, who have the sticky bit set, also to have the sticky bit. The same behaviour as with the gid =E2=80= =93 it's the same as the parent has for new directories. Thanks, -Harry --------------enig7BB3F8551529996BE7A1F7A5 Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.18 (FreeBSD) iEYEARECAAYFAlKWGyUACgkQLDqVQ9VXb8gm0ACgwEfrzXq2Os1DleK4thBC7ZWN +FUAoMscC2xD4BW/LXXH9+a0+wD7hxIM =5ZTM -----END PGP SIGNATURE----- --------------enig7BB3F8551529996BE7A1F7A5--
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?52961B25.3020109>