An ACL describes the entities that are allowed to access a specific resource. ACLs are a built-in access control
mechanism in the Windows operating systems.
NOTE: The DR Series system supports setting up share-level permissions for a CIFS share using a Microsoft
Windows administrative tool. Share-level permissions let you control access to shares. For more information, see
Configuring Share-Level Security.
NOTE: Any user that is part of BUILTIN\Administrators can edit ACLs on CIFS shares. The local DR Series system
administrator is included in the BUILTIN\Administrators group. To add additional domain groups to the BUILTIN
\Administrators group, you can use the Computer Manager tool on a Windows client to connect to the DR Series
system as Domain administrator and add any groups you want. This capability allows users other than the Domain
administrator to modify an ACL as needed.
Access Control List Support in Containers
All new containers apply a default Access Control List (ACL) at the root of the container. This default ACL is the same as
that which would be created by a Microsoft Windows 2003 Server. Therefore, these new containers with the default ACL
support the following permission types:
NOTE: Any user that is part of BUILTIN\Administrators can edit ACLs on CIFS shares. The local DR Series system
administrator is included in the BUILTIN\Administrators group. To add additional domain groups to the BUILTIN
\Administrators group, you can use the Computer Manager tool on a Windows client to connect to the DR Series
system as Domain administrator and add any groups you want. This capability allows users other than the Domain
administrator to modify an ACL as needed.
• BUILTIN\Administrators:
Allows Full access, object inherit, and container inherit.
Applies to This folder, subfolders, and files.
• CREATOR OWNER:
Allows Full access, inherit only, object inherit, and container inherit.
Applies to Subfolders and files only.
• EVERYONE:
Allows Traverse folders, execute files, list folders, read data, read attributes, and read extended
attributes.
Applies to This folder only.
• NT AUTHORITY\SYSTEM:
Allows Full access, object inherit, and container inherit.
Applies to This folder, subfolders, and files.
• BUILTIN\Users:
Allows Create folders and append data, inherit-only, and container inherit.
Applies to This folder, subfolders, and files.
• BUILTIN\Users:
Allows Read and execute, and container inherit.
Applies to This folder, subfolders, and files.
• BUILTIN\Users:
23