<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Volume Shadow Copy Restore Permissions in Windows Server 2003</title>
    <link>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307078#M822</link>
    <description>Hi,&lt;BR /&gt;&lt;BR /&gt;I've just been looking at Volume Shadow Copies, and am generally fairly pleased with what I can use them for.&lt;BR /&gt;&lt;BR /&gt;There is one area of concern however - when a user looks to restore a deleted file, they look at previous versions of the folder the file was in... it's very easy for an inexperienced user to accidentally restore the entire folder, which if it is a shared folder could be fairly catastrophic for other users work in that folder... So my questions are:&lt;BR /&gt;&lt;BR /&gt;1. If a user has write access to a folder, and accidentaly restores to a previous version will other users work in that same directory also be restored to the previous version?&lt;BR /&gt;&lt;BR /&gt;2. Is there any way to take away this kind of access while preserving it for administrators?&lt;BR /&gt;&lt;BR /&gt;Thanks&lt;BR /&gt;&lt;BR /&gt;Duncan</description>
    <pubDate>Wed, 16 Jun 2004 11:31:01 GMT</pubDate>
    <dc:creator>Duncan Edmonstone</dc:creator>
    <dc:date>2004-06-16T11:31:01Z</dc:date>
    <item>
      <title>Volume Shadow Copy Restore Permissions</title>
      <link>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307078#M822</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;I've just been looking at Volume Shadow Copies, and am generally fairly pleased with what I can use them for.&lt;BR /&gt;&lt;BR /&gt;There is one area of concern however - when a user looks to restore a deleted file, they look at previous versions of the folder the file was in... it's very easy for an inexperienced user to accidentally restore the entire folder, which if it is a shared folder could be fairly catastrophic for other users work in that folder... So my questions are:&lt;BR /&gt;&lt;BR /&gt;1. If a user has write access to a folder, and accidentaly restores to a previous version will other users work in that same directory also be restored to the previous version?&lt;BR /&gt;&lt;BR /&gt;2. Is there any way to take away this kind of access while preserving it for administrators?&lt;BR /&gt;&lt;BR /&gt;Thanks&lt;BR /&gt;&lt;BR /&gt;Duncan</description>
      <pubDate>Wed, 16 Jun 2004 11:31:01 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307078#M822</guid>
      <dc:creator>Duncan Edmonstone</dc:creator>
      <dc:date>2004-06-16T11:31:01Z</dc:date>
    </item>
    <item>
      <title>Re: Volume Shadow Copy Restore Permissions</title>
      <link>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307079#M823</link>
      <description>for q1) check this out..&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.microsoft.com/usa/presentations/281,27,Additional" target="_blank"&gt;http://www.microsoft.com/usa/presentations/281,27,Additional&lt;/A&gt; Note:&lt;BR /&gt;&lt;BR /&gt;Ganesh</description>
      <pubDate>Wed, 16 Jun 2004 14:03:35 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307079#M823</guid>
      <dc:creator>Ganesh Babu</dc:creator>
      <dc:date>2004-06-16T14:03:35Z</dc:date>
    </item>
    <item>
      <title>Re: Volume Shadow Copy Restore Permissions</title>
      <link>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307080#M824</link>
      <description>i am sorry.. the url got messed up..&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.microsoft.com/usa/presentations/VolumeShadowCopyLab.ppt" target="_blank"&gt;http://www.microsoft.com/usa/presentations/VolumeShadowCopyLab.ppt&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;In this PPT, there is an slide for additional note.. check that one..&lt;BR /&gt;&lt;BR /&gt;Ganesh</description>
      <pubDate>Wed, 16 Jun 2004 14:04:50 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307080#M824</guid>
      <dc:creator>Ganesh Babu</dc:creator>
      <dc:date>2004-06-16T14:04:50Z</dc:date>
    </item>
    <item>
      <title>Re: Volume Shadow Copy Restore Permissions</title>
      <link>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307081#M825</link>
      <description>Ganesh,&lt;BR /&gt;&lt;BR /&gt;Yeah, I'd seen this presentation - this is interesting, but doesn't really help...&lt;BR /&gt;&lt;BR /&gt;Here's an example... My File Server (fs1) has a disk D: - on it I have a directory called shares (D:\shares) - I share this out to my users as 'users', so they all mount \\fs1\users&lt;BR /&gt;&lt;BR /&gt;Now its true that any files they create in \\fs1\users they won't be able to restore themselves through shadow copies - they would need an admin in access \\fs1\d$ and restore the file from there... but in the interests of a sensible file hierarchy they won't put all there files in this directory - they will stick them in a bunch of sub-directories. Lets imagine they have a subdirectory \\fs1\users\finance\common that is used by 20 or so accountants to store work-in-progress spreadsheets - they all have write access to the directory... now one of the accountants deletes a spreadsheet in this directory by accident - he decides to pull it back by accessing a previous version of the directory \\fs1\users\finance\common, but he chooses the restore option here and restores the entire dorectory! Now all work since the last shadow copy is lost! &lt;BR /&gt;&lt;BR /&gt;As I said, there should be a way of preventing this, maybe through an AD group policy?&lt;BR /&gt;&lt;BR /&gt;Any ideas gratefully recieved - 10 points for the perfect solution!&lt;BR /&gt;&lt;BR /&gt;CHeers&lt;BR /&gt;&lt;BR /&gt;Duncan</description>
      <pubDate>Wed, 16 Jun 2004 14:54:54 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307081#M825</guid>
      <dc:creator>Duncan Edmonstone</dc:creator>
      <dc:date>2004-06-16T14:54:54Z</dc:date>
    </item>
    <item>
      <title>Re: Volume Shadow Copy Restore Permissions</title>
      <link>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307082#M826</link>
      <description>this is one reason we disable VSC on our 2003 servers. &lt;BR /&gt;&lt;BR /&gt;it's less work to use the existing tape backup software (not to mention we're pressed for Disk on our san)</description>
      <pubDate>Thu, 17 Jun 2004 07:10:36 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307082#M826</guid>
      <dc:creator>Thomas Bianco</dc:creator>
      <dc:date>2004-06-17T07:10:36Z</dc:date>
    </item>
    <item>
      <title>Re: Volume Shadow Copy Restore Permissions</title>
      <link>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307083#M827</link>
      <description>Hi duncan,&lt;BR /&gt;Unlike a true restore operation, when you restore  a file  Previous Version, the security settings of the previous version are not stored. If you restore the file to its original location, and the file exists in the original location, the restored previous version overwrites the current version and uses the permission assigned to the current version. If you copy a previous version to another location, or restore the file to its original location but the file no longer exists in the original location, the restored previous version inherits permissions from the parent folder.&lt;BR /&gt;&lt;BR /&gt;At the and of the story are good abits always do a backup of datas before make any changes. Better if you do it with NTbackup utility which backup not the files/folders only, but the securyty settings too.&lt;BR /&gt;&lt;BR /&gt;Hope it helps...&lt;BR /&gt;&lt;BR /&gt;Luca</description>
      <pubDate>Thu, 17 Jun 2004 11:01:20 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307083#M827</guid>
      <dc:creator>WebWalker</dc:creator>
      <dc:date>2004-06-17T11:01:20Z</dc:date>
    </item>
    <item>
      <title>Re: Volume Shadow Copy Restore Permissions</title>
      <link>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307084#M828</link>
      <description>So still the question remains, is it possible to prevent users from restoring files or folders using VSCS. And still maintain the option to do it as an administrator.&lt;BR /&gt;I had a situation with one user in witch I was glad I had VSCS enabled, but like Duncan said. in most situation you don't want users to start restoring files and folders themselves.&lt;BR /&gt;I've looked and looked, and read a couple of hundred sites, but I can't find anything regarding this topic :( any help would be nice, or I will be forces to stop using VSCS.&lt;BR /&gt;&lt;BR /&gt;BTW, If I would use a DFS, on a different server, with VSCS enabled on the other server, I could make it work, but then replication could cause VSCS to be to "late" rightÂ</description>
      <pubDate>Mon, 27 Sep 2004 19:05:37 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/volume-shadow-copy-restore-permissions/m-p/3307084#M828</guid>
      <dc:creator>Louis Reedijk</dc:creator>
      <dc:date>2004-09-27T19:05:37Z</dc:date>
    </item>
  </channel>
</rss>

