Тут показані розбіжності між вибраною ревізією та поточною версією сторінки.
| Порівняння попередніх версій Попередня ревізія | |||
|
software:os:windows:powershell:files [2025/05/26 03:05] charon |
software:os:windows:powershell:files [2025/05/26 03:09] (поточний) charon |
||
|---|---|---|---|
| Рядок 32: | Рядок 32: | ||
| $acl.SetAccessRule($ownerRule) | $acl.SetAccessRule($ownerRule) | ||
| $acl.SetAccessRule($systemRule) | $acl.SetAccessRule($systemRule) | ||
| + | |||
| + | # Save updated ACL | ||
| + | Set-Acl -Path $folder -AclObject $acl | ||
| + | |||
| + | Write-Output " | ||
| + | </ | ||
| + | |||
| + | ===== Set permissions for normal folder ===== | ||
| + | Owner, SYSTEM and Administrators has full access to folder and subfolders, Authenticated Users can read. | ||
| + | <code powershell> | ||
| + | $folder = " | ||
| + | |||
| + | # Get current ACL | ||
| + | $acl = Get-Acl $folder | ||
| + | |||
| + | # Remove all explicit access rules | ||
| + | $acl.Access | ForEach-Object { $acl.RemoveAccessRule($_) } | ||
| + | |||
| + | # Disable inheritance and remove inherited permissions | ||
| + | $acl.SetAccessRuleProtection($true, | ||
| + | |||
| + | # Get current user | ||
| + | $currentUser = [System.Security.Principal.WindowsIdentity]:: | ||
| + | $acl.SetOwner([System.Security.Principal.NTAccount]$currentUser) | ||
| + | |||
| + | # Define new access rules | ||
| + | $ownerRule = New-Object System.Security.AccessControl.FileSystemAccessRule($currentUser, | ||
| + | $systemRule = New-Object System.Security.AccessControl.FileSystemAccessRule(" | ||
| + | $adminsRule = New-Object System.Security.AccessControl.FileSystemAccessRule(" | ||
| + | $authUsersRule = New-Object System.Security.AccessControl.FileSystemAccessRule(" | ||
| + | |||
| + | # Apply rules | ||
| + | $acl.SetAccessRule($ownerRule) | ||
| + | $acl.SetAccessRule($systemRule) | ||
| + | $acl.SetAccessRule($adminsRule) | ||
| + | $acl.SetAccessRule($authUsersRule) | ||
| # Save updated ACL | # Save updated ACL | ||