Bug 32904 - Samba-Freigaben: Setzen von SUID, SGID und Sticky Bit auf dem Reiter Samba-Erweiterte-Rechte
Samba-Freigaben: Setzen von SUID, SGID und Sticky Bit auf dem Reiter Samba-Er...
Status: CLOSED FIXED
Product: UCS manual
Classification: Unclassified
Component: Shares
unspecified
All All
: P5 enhancement (vote)
: UCS 3.2
Assigned To: Moritz Muehlenhoff
Erik Damrose
: interim-3
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2013-10-21 08:43 CEST by Moritz Muehlenhoff
Modified: 2015-04-01 13:49 CEST (History)
8 users (show)

See Also:
What kind of report is it?: ---
What type of bug is this?: ---
Who will be affected by this bug?: ---
How will those affected feel about the bug?: ---
User Pain:
Enterprise Customer affected?:
School Customer affected?:
ISV affected?:
Waiting Support:
Flags outvoted (downgraded) after PO Review:
Ticket number:
Bug group (optional):
Max CVSS v3 score:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Moritz Muehlenhoff univentionstaff 2013-10-21 08:43:37 CEST
+++ This bug was initially created as a clone of Bug #15087 +++

Samba kann die Rechte SUID, SGID und Sticky Bit ebenfalls auswerten und auch setzen. Dafür sollten diese auf dem Reiter Samba-Erweiiterte-Rechte einstellbar sein.

Es sollte geprüft werden, ob die Rechte jeweils für Dateien und Verzeichnisse sinnvoll sind. Beispielsweise auf UNIX-Ebene ist das Sticky-Bit nur an Verzeichnissen sinnvoll, daher vermute ich, ist es für Samba auch nur dort sinnvoll.
Comment 1 Moritz Muehlenhoff univentionstaff 2013-10-22 11:27:03 CEST
Documented in revision 45417
Comment 2 Erik Damrose univentionstaff 2013-10-25 10:16:15 CEST
The documentation should be updated according to changes made at the original bug:

* The setuid option as been removed
* The sticky option is actually called 'sticky bit'
* The documented behaviour "Wird das Freigabe-Objekt in der Univention Management Console bearbeitet, werden die Änderungen im Dateisystem überschrieben." has been changed at Bug #15087: owner/group/permissions will only be written to the directory in case they have been changed.
Comment 3 Erik Damrose univentionstaff 2013-10-25 10:38:52 CEST
* English translation: "The options should be thoroughly checked before setting" i think it should be 'applying' instead of 'setting'
Comment 4 Erik Damrose univentionstaff 2013-10-25 11:02:00 CEST
The last comment is for another bug: Bug 32905
Comment 5 Moritz Muehlenhoff univentionstaff 2013-11-07 13:08:05 CET
(In reply to Erik Damrose from comment #2)
> The documentation should be updated according to changes made at the
> original bug:
> 
> * The setuid option as been removed

The section explains the Unix permission model in general, so I've left it in.

> * The sticky option is actually called 'sticky bit'
> * The documented behaviour "Wird das Freigabe-Objekt in der Univention
> Management Console bearbeitet, werden die Änderungen im Dateisystem
> überschrieben." has been changed at Bug #15087: owner/group/permissions will
> only be written to the directory in case they have been changed.

Fixed in revision 45883
Comment 6 Erik Damrose univentionstaff 2013-11-07 14:28:10 CET
OK, Verified