- Lab
- A Cloud Guru
Managing Permissions and ACLs in SUSE Linux Enterprise
In this hands-on lab, we will be looking at user permissions and access control lists (ACLs). It is important to understand the effects permissions and ACLs can have on system security.
Path Info
Table of Contents
-
Challenge
Correct the Issue with the `devuser` Being Able to Delete the `cloud_user`'s File Located in `/shareddata`
-
Verify the issue as the
cloud_user
:cd /shareddata touch examplefile
-
Switch to the
devuser
:su devuser (password is P@ssw0rd) rm ./examplefile exit
-
As the
cloud_user
, check the permissions on the/shareddata
folder:ls -l /
Output:
d---rws--- root collab shareddata
Note that on the
shareddata
directory, there is no sticky bit set, but the GID is set 'denoted by the s'. -
Set the sticky bit as
cloud_user
:sudo -i chmod 3070 /shareddata
-
Repeat the file create as
cloud_user
and then try to remove the file asdevuser
to verify it is working as intended.
-
-
Challenge
Correct the Issue that Is Preventing `testuser` from Being Able to Write to `/home/cloud_user/file`
-
Verify the issue as the
cloud_user
:cd ~/ su testuser echo 'testing' >> file exit
-
Check the ACL on the file:
getfacl file
Note the mask and the effective permissions.
-
Correct the mask as the
cloud_user
:setfacl -m m::rwx file
-
Verify the issue has been corrected:
su testuser echo 'testing' >> file cat file exit
-
What's a lab?
Hands-on Labs are real environments created by industry experts to help you learn. These environments help you gain knowledge and experience, practice without compromising your system, test without risk, destroy without fear, and let you learn from your mistakes. Hands-on Labs: practice your skills before delivering in the real world.
Provided environment for hands-on practice
We will provide the credentials and environment necessary for you to practice right within your browser.
Guided walkthrough
Follow along with the author’s guided walkthrough and build something new in your provided environment!
Did you know?
On average, you retain 75% more of your learning if you get time for practice.