correction redondance 'ajout du tableau des droits daccès partage via powershell
This commit is contained in:
@@ -47,12 +47,19 @@ icacls <chemin du fishier/dossier> /deny <nom du compte>: (interdiction à ajout
|
|||||||
icacls F:\Téléchargement /deny Frederic:(D,RX)
|
icacls F:\Téléchargement /deny Frederic:(D,RX)
|
||||||
```
|
```
|
||||||
>liste des droits
|
>liste des droits
|
||||||
|
|
||||||
> N - no access
|
> N - no access
|
||||||
|
|
||||||
> F - full access
|
> F - full access
|
||||||
|
|
||||||
> M - modify access
|
> M - modify access
|
||||||
|
|
||||||
> RX - read and execute access
|
> RX - read and execute access
|
||||||
|
|
||||||
> R - read-only access
|
> R - read-only access
|
||||||
|
|
||||||
> W - write-only access
|
> W - write-only access
|
||||||
|
|
||||||
> D - delete access
|
> D - delete access
|
||||||
---
|
---
|
||||||
|
|
||||||
@@ -81,23 +88,19 @@ Get-Acl -Path "C:\Dog.txt" | Set-Acl -Path "C:\Cat.txt"
|
|||||||
```powershell
|
```powershell
|
||||||
Install-Module NTFSSecurity
|
Install-Module NTFSSecurity
|
||||||
```
|
```
|
||||||
## Ajouter des droits
|
### Ajouter des droits
|
||||||
```powershell
|
```powershell
|
||||||
Add-NTFSAccess -Path "dossier_cible" -AccessRight "type_de_droits" -Account "groupe_de_domaine_local_souhaité"
|
Add-NTFSAccess -Path "dossier_cible" -AccessRight "type_de_droits" -Account "groupe_de_domaine_local_souhaité"
|
||||||
```
|
```
|
||||||
|
|
||||||
## lister les droits
|
### lister les droits
|
||||||
```powershell
|
```powershell
|
||||||
Get-NTFSAccess "dossier_cible" |format-Table -Wrap
|
Get-NTFSAccess "dossier_cible" |format-Table -Wrap
|
||||||
```
|
```
|
||||||
|
>liste des droits utilisables:
|
||||||
## Gérer les partages
|
>| AppendData | GenericAll | Read | Synchronize |
|
||||||
### Ajouter des droits
|
>| ChangePermissions | GenericExecute | ReadAndExecute | TakeOwnership |
|
||||||
```powershell
|
>| CreateFiles | GenericRead | ReadAttributes | Traverse |
|
||||||
New-SMBShare -Name "Nom_du_Partage" -Path "dossier_cible" -"type_de_droits" "list_users"
|
>| Delete | GenericWrite | ReadData | Write |
|
||||||
```
|
>| DeleteSubdirectoriesAndFiles | Modify | ReadExtendedAttributes | WriteAttributes |
|
||||||
|
>| FullControl | None | ReadPermissions | WriteExtendedAttributes |
|
||||||
### lister les droits
|
|
||||||
```powershell
|
|
||||||
Get-SMBShare -Name "Nom_du_Partage"
|
|
||||||
```
|
|
||||||
|
|||||||
@@ -78,6 +78,7 @@ Revoke-SmbShareAccess -Name "chemin vers le dossier de partage" -AccountName "co
|
|||||||
```powershell
|
```powershell
|
||||||
Revoke-SmbShareAccess -Name "Partage" -AccountName "florian@it-connect.local" -Force
|
Revoke-SmbShareAccess -Name "Partage" -AccountName "florian@it-connect.local" -Force
|
||||||
```
|
```
|
||||||
|
---
|
||||||
### Refuser des droits d'accès sur le partage
|
### Refuser des droits d'accès sur le partage
|
||||||
```powershell
|
```powershell
|
||||||
Bloke-SmbShareAccess -Name "chemin vers le dossier de partage" -AccountName "compte dont on veut vérifier les droits" -Force
|
Bloke-SmbShareAccess -Name "chemin vers le dossier de partage" -AccountName "compte dont on veut vérifier les droits" -Force
|
||||||
@@ -88,5 +89,4 @@ Bloke-SmbShareAccess -Name "Partage" -AccountName "florian@it-connect.local" -Fo
|
|||||||
```
|
```
|
||||||
> 💡 Le paramètre -Force permet de zapper la confirmation.
|
> 💡 Le paramètre -Force permet de zapper la confirmation.
|
||||||
|
|
||||||
> 💡 on peut débloquer en changeant Bloke par Unbloke
|
> 💡 on peut débloquer en changeant Bloke par Unbloke
|
||||||
---
|
|
||||||
Reference in New Issue
Block a user