ITEC3116 SNAL Lecture 7 FIle Permission

Download as pptx, pdf, or txt
Download as pptx, pdf, or txt
You are on page 1of 18

System and Network

Administration Linux based

ITEC 3116
File Permission in Linux OS
Lecture 7
Recap of Lecture 6

 Directories & Subdirectories


Linux OS

 Linux is a clone of UNIX, the multi-user operating


system which can be accessed by many users
simultaneously.

 Linux can also be used in mainframes and servers


without any modifications. But this raises security
concerns as an uninvited or harmful
user can corrupt, change or remove crucial data.
Linux Authorization

 For effective security, Linux divides authorization


into 2 levels.

I. Ownership
II. Permission
Ownership of Linux files

Every file and directory on your Linux system is assigned 3


types of owner
User
 A user is the owner of the file. By default, the person who
created a file becomes its owner. Hence, a user is also
sometimes called an owner.
Group
 A user-group can contain multiple users. All users belonging
to a group will have the same access permissions to the file.
 Suppose you have a project where a number of people
require access to a file. Instead of manually assigning
permissions to each user, you could add all users to a group,
and assign group permission to file such that only this group
members and no one else can read or modify the files.
Ownership of Linux files

Other
 Any other user who has access to a file. This
person has neither created the file, nor he/she
belongs to a user-group who could own the file.

 Practically, it means everybody else. Hence,


when you set the permission for others, it is also
referred as set permissions for the world.
How does Linux distinguish between
different user?

 Now, the big question arises how does Linux


distinguish between these three user types
so that a user 'A' cannot affect a file which
contains some other user 'B's' vital
information/data.
 It is like you do not want your colleague, who
works on your Linux computer, to view your
images.
So you can set the Permissions, and define user
behavior.
Permission system on Linux

Permissions
 Every file and directory in your
UNIX/Linux system has following 3
permissions defined for all the 3 owners
discussed above.

I. Read
II. Write
III. Execute
Permission system on Linux
 Read: This permission give you the authority to open
and read a file. Read permission on a directory gives
you the ability to lists its content.

 Write: The right permission gives you the authority to


modify the contents of a file.
 The write permission on a directory gives you the authority
to add, remove and rename files stored in the directory.
 Consider a scenario where you have to write permission on
file but do not have write permission on the directory where
the file is stored. You will be able to modify the file contents.
But you will not be able to rename, move or remove the file
from the directory.
Permission system on Linux

 Execute: In Windows, an executable program


usually has an extension ".exe" and which you
can easily run.
 But In Unix/Linux, you cannot run a program
unless the execute permission is set. If the
execute permission is not set, you might still
be able to see/modify the program
code(provided read & write permissions are
set), but not run it.
Owner assigned Permission

 Owner assigned Permission on every


file and directories
Command 'ls -al'

 'ls -al' gives detailed


1st Column
information of
File type and access permissions

the files.
2 Column
nd
The command provides
# of HardLinks to the File
information in a columnar format. The
columns contain the following
3 Column
rd
Owner and the creator of the file

information:
4 Column
th
Group of the owner

5th Column File size in Bytes

6th Column Date and Time

7th Column Directory or File name


ls –al or ls-al
File type and access permissions

 Highlighted '-rw-rw-r--'and this


weird looking code is the one that
tells us about the permissions given
to the owner, user group and the
world.
File type and access permissions
 Else, if it were a directory, d would
have been shown.

 The characters are pretty easy to


remember
 r = read permission
w = write permission
x = execute permission
- = no permission
File type and access permissions

 The first part of the code is ’rw-'.


This suggests that the owner 'Home'
can:

 Read the file


 Write or edit the file
 He cannot execute the file since the execute
bit is set to '-'.
File type and access permissions

 The second part is 'rw-’. It for the


user group 'Home' and group-
members can:
 Read the file
 Write or edit the file
 The third part is for the world which
means any user. It says 'r--'. This
means the user can only:
 Read the file
Lecture End

You might also like