Slide 16
Slide 16 text
01/23/09
Windows ACLs
• From Microsoft
– Implemented in Windows NT
– Minor changes in subsequent releases
• Users & groups identified by SIDs (Security Identifiers)
– Like a variablelength enormous binary UID but with global scope
– e.g. S152110043363481177238915682003330512
• 14 access mask bits
– ReadData/ListFolder, WriteData/CreateFile, AppendData/CreateFolder,
ReadExtendedAttributes, WriteExtendedAttributes, Execute/TraverseFolder,
DeleteChild, ReadAttributes, WriteAttributes, Delete, ReadPermissions,
WritePermissions, TakeOwnership, Synchronize