Mojave share permissions

Hi guys,


So I have a few issues with some share permissions following a recent upgrade to Mojave. Data is shared on a Thunderbolt drive but I seem to be seeing the 2 following issues


1 - Groups that are set on the top level of the shared folders aren't being seen by the users

2 - When new files/folders are being created inside the top shared folder, the permissions are showing as user - read/write / everyone - read only, despite the top level having a group and everyone set to read/write


I've downloaded tinkertool system and I can propagate them, but this still doesn't fix the new file/folder issue.


Any suggestions please?

Posted on May 20, 2019 5:21 AM

Reply

Similar questions

12 replies

May 22, 2019 9:11 AM in response to stuarta99

I've created some test folders on the server and when I go into Tinkertool it shows the ACL permission with inherited ticked. When a user creates a folder, Tinkertool doesn't show the ACL permission


Just noticed this command to enable ACL on SMB, maybe I have to run this command


"sudo defaults write /Library/Preferences/SystemConfiguration/com.apple.smb.server AclsEnabled -bool YES"

May 20, 2019 9:00 AM in response to stuarta99

Sure they used to though before the upgrade.

Never.

We would be happy to use the POSIX permission for Everyone to be set to read/write but it's no good when it doesn't apply to new folders

The Umask in macOS doesn't allow for group file sharing via POSIX permissions.

You would have to change everyone's umask setting to something else. I'm not sure what it is, though.

May 20, 2019 6:04 AM in response to stuarta99

ok update on this. Using tinkertool system, if I add a group to the ACL permissions and tell it to propagate with subfolders, it appears to work. However when a user creates a subfolder, it still shows the same with the user having read/write and everyone read, but other users do have access. So almost as though the client machine isn't showing the ACL permission, but it's lying.


If I modify the POSIX permission of Others to read/write, the permission for the user then shows everyone as read/write, but sub folders don't pick up the parent settings.

May 23, 2019 1:14 AM in response to stuarta99

If a user creates a new folder inside top_share, it’s pulling in the ‘inherit’ attribute from the top level and everyone can edit.  If they create a folder further down, it’s not pulling in the ‘inherit’ attribute and nobody edit until we push the settings.


I have propagated settings from the top level with TinkerTool but is there something I'm missing?

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

Mojave share permissions

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.