Soldato
- Joined
- 18 May 2010
- Posts
- 22,944
- Location
- London
This has been a little bit of an issue for a few years now and I've never been able to solve it.
We managed groups using LDAP. We can also set extended acl's using setfacl.
This is the scenario and problem.
Condition Reports folder has registrar group (rwx) on it and the group gets those privileges.
I can set an extended acl on the directory and use the -R switch to give user:lucy:rwx on the directory and subfolders.
If a member of the registrar group makes a change to a file or folder within the condition reports folder the extended acl for lucy seems to get stripped, meaning user:lucy no longer has access.
How do I set inheritance on the directory so that if a member of the group registrar makes a change the extended acl set for user:lucy is retained, without having to reset the privilege manually every time a change is made?
Thanks
We managed groups using LDAP. We can also set extended acl's using setfacl.
This is the scenario and problem.
Condition Reports folder has registrar group (rwx) on it and the group gets those privileges.
I can set an extended acl on the directory and use the -R switch to give user:lucy:rwx on the directory and subfolders.
If a member of the registrar group makes a change to a file or folder within the condition reports folder the extended acl for lucy seems to get stripped, meaning user:lucy no longer has access.
How do I set inheritance on the directory so that if a member of the group registrar makes a change the extended acl set for user:lucy is retained, without having to reset the privilege manually every time a change is made?
Thanks
Last edited: