|
103.
|
|
|
sudo chgrp -R sysadmin /srv/samba/share/
|
|
|
|
sudo chgrp -R sysadmin /srv/samba/share/
|
|
Translated and reviewed by
Shushi Kurose
|
|
|
|
Located in
serverguide/C/windows-networking.xml:622(command)
|
|
104.
|
|
|
sudo setfacl -R -m g:qa:rx /srv/samba/share/
|
|
|
|
sudo setfacl -R -m g:qa:rx /srv/samba/share/
|
|
Translated and reviewed by
Shushi Kurose
|
|
|
|
Located in
serverguide/C/windows-networking.xml:623(command)
|
|
105.
|
|
|
The <application>setfacl</application> command above gives <emphasis>execute</emphasis> permissions to all files in the <filename>/srv/samba/share</filename> directory, which you may or may not want.
|
|
|
|
(no translation yet)
|
|
|
|
Located in
serverguide/C/windows-networking.xml:627(para)
|
|
106.
|
|
|
Now from a Windows client you should notice the new file permissions are implemented. See the <application>acl</application> and <application>setfacl</application> man pages for more information on POSIX ACLs.
|
|
|
|
これでWindowsクライアントから新しいファイルパーミッションが有効になったことが確認できます。POSIX準拠のシステムについてのより詳細な情報は、<application>acl</application>、および、<application>setfacl</application>のmanページを参照下さい。
|
|
Translated by
hmatsue
|
|
Reviewed by
Fumihito YOSHIDA
|
|
|
|
Located in
serverguide/C/windows-networking.xml:633(para)
|
|
107.
|
|
|
Samba AppArmor Profile
|
|
|
|
(no translation yet)
|
|
|
|
Located in
serverguide/C/windows-networking.xml:641(title)
|
|
108.
|
|
|
Ubuntu comes with the <application>AppArmor</application> security module, which provides mandatory access controls. The default AppArmor profile for Samba will need to be adapted to your configuration. For more details on using AppArmor see <xref linkend="apparmor"/>.
|
|
|
|
Ubuntuは強制アクセスコントロール(MAC)を提供する、<application>AppArmor</application>セキュリティモジュールと共に配布されています。デフォルトでのSamba用AppArmorプロファイルをあなたのシステム設定に合わせて変更する必要があります。AppArmorの使用法についてのより詳細な情報は、<xref linkend="apparmor"/>を参照下さい。
|
|
Translated by
hmatsue
|
|
Reviewed by
Fumihito YOSHIDA
|
|
|
|
Located in
serverguide/C/windows-networking.xml:643(para)
|
|
109.
|
|
|
There are default AppArmor profiles for <filename>/usr/sbin/smbd</filename> and <filename>/usr/sbin/nmbd</filename>, the Samba daemon binaries, as part of the <application>apparmor-profiles</application> packages. To install the package, from a terminal prompt enter:
|
|
|
|
<filename>/usr/sbin/smbd</filename>、および、<filename>/usr/sbin/nmbd</filename>に対するデフォルトのAppArmorのプロファイルと、Sambaデーモンのバイナリが、<application>apparmor-profiles</application>パッケージに含まれています。パッケージをインストールするには、ターミナルに以下を入力して下さい。:
|
|
Translated by
hmatsue
|
|
Reviewed by
Fumihito YOSHIDA
|
|
|
|
Located in
serverguide/C/windows-networking.xml:649(para)
|
|
110.
|
|
|
sudo apt-get install apparmor-profiles
|
|
|
|
sudo apt-get install apparmor-profiles
|
|
Translated and reviewed by
Shushi Kurose
|
|
|
|
Located in
serverguide/C/windows-networking.xml:656(command) serverguide/C/security.xml:925(command)
|
|
111.
|
|
|
This package contains profiles for several other binaries.
|
|
|
|
このパッケージは、他のいくつかのバイナリのためのプロファイルを含みます。
|
|
Translated and reviewed by
Nazo
|
|
|
|
Located in
serverguide/C/windows-networking.xml:660(para)
|
|
112.
|
|
|
By default the profiles for <application>smbd</application> and <application>nmbd</application> are in <emphasis>complain</emphasis> mode allowing Samba to work without modifying the profile, and only logging errors. To place the <application>smbd</application> profile into <emphasis>enforce</emphasis> mode, and have Samba work as expected, the profile will need to be modified to reflect any directories that are shared.
|
|
|
|
<application>smbd</application>、および、<application>nmbd</application>のためのプロファイルは、デフォルトでは<emphasis>complain</emphasis>モードになっており、プロファイルに変更を加えずにSambaが動作でき、エラーのログを残すだけの状態になっています。<application>smbd</application>プロファイルを<emphasis>enforce</emphasis>モードでSambaが意図したとおりに動くようにするためには、プロファイルを共有ディレクトリを反映させて変更する必要があります。
|
|
Translated by
hmatsue
|
|
Reviewed by
Fumihito YOSHIDA
|
|
|
|
Located in
serverguide/C/windows-networking.xml:665(para)
|