Real Geek Forums  

Go Back   Real Geek Forums > Archives > Operating Systems > Windows Vista > Windows Vista Security

Notices

Reply

File ownership for legacy installer programs

 

LinkBack Thread Tools Display Modes
Old 09-05-2006, 09:06 PM   #1 (permalink)
Default File ownership for legacy installer programs

If I run as an administrative user a legacy installer program for a program
which stores user settings and data in its own directory, then the files and
directories it creates are owned by and accessible to that user, and the
program runs correctly as that user. But if I run the installer as a regular
user, and then enter an admin user's password in the UAC dialog when the
program needs to elevate its privileges, will the files and directories
which it creates be owned by the regular user or the admin user? Will they
by default at least be set as writeable by the regular user?

I've read that Vista has a compatibility mode by which programs which try to
write data to their own program directories while running as ordinary users
will have that data transparently written instead to a union directory under
the user's own home directory so that the program will work properly on
Vista, but even when I enable compatibility mode in the program's settings,
I can't get Palm's desktop software to work under a user account. Even more
oddly, it won't work even if I run it with the "run as administrator" option
in a regular user account.
Are there any known problems with the union directory feature on Vista build
5536?

Roof Fiddler
Guest
 
Posts: n/a
Reply With Quote  
Old 09-06-2006, 01:07 AM   #2 (permalink)
Default Re: File ownership for legacy installer programs

Hello,

<snip>
Quote:
> But if I run the installer as a regular user, and then enter an admin
> user's password in the UAC dialog when the program needs to elevate its
> privileges, will the files and directories which it creates be owned by
> the regular user or the admin user?
They will be owned by the administrators group.
Quote:
> Will they by default at least be set as writeable by the regular user?
No. They will only inherit the permissions marked as inheritable from the
parent folder. For most folders, this is Normal users read-only,
administrative users full control. The only folder normal users have write
access to is their user profile directory.

You will need to manually edit security to allow a user write-access to a
folder outside of their user profile directory.
Quote:
> I've read that Vista has a compatibility mode by which programs which try
> to write data to their own program directories while running as ordinary
> users will have that data transparently written instead to a union
> directory under the user's own home directory so that the program will
> work properly on Vista, but even when I enable compatibility mode in the
> program's settings, I can't get Palm's desktop software to work under a
> user account. Even more oddly, it won't work even if I run it with the
> "run as administrator" option in a regular user account.
> Are there any known problems with the union directory feature on Vista
> build 5536?
The "Virtualization" compatability mode is enabled for 32-bit programs that
were not designed for Windows Vista and are not running as administrator.
This mode will silently redirect programs that save things to
HKEY_LOCAL_MACHINE and certain folder locations such as program files to the
user's profile directory.

Due to the way virtualization is designed, it can cause problems in certain
situations. For example, a program that relies on a certain file being
writable from different user accounts will behave unexpectedly, since each
user will have their own copy of that file and will not see changes made
from other user accounts.

Virtualization also causes problems if you are dual-booting and wanting to
share config files for certain applications between Vista and the other
operating system.

Based on what you described with Palm's desktop software, I do not believe
virtualization is the culprit, as running the program "as administrator"
disables virtualization, and this would have allowed the program to work.


--
- JB

Windows Vista Support Faq
http://www.jimmah.com/vista/

Jimmy Brush
Guest
 
Posts: n/a
Reply With Quote  
Reply

Tags
None

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads

Thread Thread Starter Forum Replies Last Post
Take ownership-for dummies Jeff Windows Vista File Management 7 01-07-2007 07:05 PM
Ownership ? Jerald D Montgomery Windows Vista File Management 4 01-01-2007 10:29 PM
Cannot take ownership under any circumstances Jordan M Windows Vista Security 1 07-29-2006 01:38 AM
Installer asking for drivers Bo Windows Vista Install & Setup 5 07-03-2006 02:12 PM
file/folder security/ownership Piotr Wozniacki Windows Vista Performance & Maintenance 3 06-26-2006 12:03 AM


All times are GMT. The time now is 06:13 PM.


Powered by vBulletin® Version 3.7.1
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Copyright © 2005 - 2007 RealGeek.com. All rights reserved.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90