[prev in list] [next in list] [prev in thread] [next in thread] 

List:       cifs-protocol
Subject:    Re: [cifs-protocol] MS-SMB2/MS-FSA: setting SD inherited ACL flag "... - TrackingID#2105100040001378
From:       Ralph Boehme via cifs-protocol <cifs-protocol () lists ! samba ! org>
Date:       2021-05-17 14:06:29
Message-ID: 2ebeff48-8072-a697-9005-48949120c214 () samba ! org
[Download RAW message or body]

[Attachment #2 (multipart/signed)]

[Attachment #4 (multipart/mixed)]


Hi Obaid,

Am 5/12/21 um 8:26 PM schrieb Obaid Farooqi:
> What you are describing is documented in MS-DTYP section "2.4.6
> SECURITY_DESCRIPTOR", as follows:
> 
> " DC |  Set when the DACL is to be computed through inheritance. When both
> DC and DI DACL Computed Inheritance Required      |  are set, the
> resulting security descriptor sets DI; the DC setting is not
> preserved. " 
> https://docs.microsoft.com/en-us/openspecs/windows_protocols/ms-dtyp/7d4dac05-9cef-4563-a058-f108abecce1d
>  
> Please let me know if this does not answer your question.

thanks for looking into this!

Well, I still find it a bit mind-boggling to align MS-FSA 2.1.5.16 
(which I read as "object store applies SD *as is*") with MS-DTYP 2.4.6.

But I certainly now do understand the intended behaviour so you can 
close this case. Thanks to the cifs-protocol list archives the issue is 
now clearly documented for anyone who stumbles across this in the future. :)

Thanks!
-slow

-- 
Ralph Boehme, Samba Team                https://samba.org/
Samba Developer, SerNet GmbH   https://sernet.de/en/samba/
GPG-Fingerprint   FAE2C6088A24252051C559E4AA1E9B7126399E46


["OpenPGP_signature.asc" (application/pgp-signature)]

_______________________________________________
cifs-protocol mailing list
cifs-protocol@lists.samba.org
https://lists.samba.org/mailman/listinfo/cifs-protocol


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic