Home > Midmarket CIO Tips > > Utility audits user access to files and directories
CIO Midmarket Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 


Utility audits user access to files and directories


Serdar Yegulalp, Contributor
05.24.2006
Rating: --- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


This tip originally appeared on SearchWinSystems.com, a sister site of SearchSMB.com.

One of the components of good security is awareness—for instance, knowing whether or not a given object is indeed accessible or inaccessible to a given user or group. Admins typically audit accessibility through Explorer's Security tab, but it's much harder to do this for multiple objects or non-Explorer objects that have access control (such as services or registry keys).

But once again, those administrator lifesavers at Sysinternals.com, Mark Russinovich and Bryce Cogswell, have come to the rescue. Their new tool, AccessChk, is a simple but powerful command-line tool for auditing access controls against various objects, such as services, registry keys, files and folders.

An admin provides AccessChk with a user or group name and an object to audit. For instance, to audit all the services that the Power Users account has to Windows Services, you would use the command accesschk "power users" –c (note the use of quotes to demarcate an object with a space in the name). For a Registry key, use the –k switch: accesschk "power users" -k hklm\software. Adding the -s switch to any command makes it work recursively: It processes not only the object in question, but any objects under it (subfolders, subkeys, etc.). Full documentation of all the available command-line switches is contained in the program itself.

AccessChk has a few limitations. Right now you can only audit for one user or group at a time; you can't supply a list of groups to match. You also need to be careful when you audit against filenames or pathnames that have Unicode (non-ASCII) characters in their name -- the report returned will not list them correctly unless you are using the correct locale for the console. Also, the first time you run AccessChk you'll be prompted to click through a licensing agreement. But this only happens once.

More information from SearchWinSystems.com


Rate this Tip
To rate tips, you must be a member of SearchCIO-Midmarket.com.
Register now to start rating these tips. Log in if you are already a member.




Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Security tools for the midmarket
Legal Expert: MDM can advance compliance goals
Database security: Limiting access is key
San Francisco network lockup justifies CIO fears
Security monitoring tools: Better to buy than build?
CIO Kathy Lang: Virtual patrolling center enhances campus safety
Marquette CIO enhances student safety with virtual patrolling
Spyware defense for the midmarket
Anti-spam tricks for the midmarket toolbox (expert podcast)
Compliance-burdened CIOs turning to security management tools
Information security requires organized teams

IT auditing for the midmarket
Compliance: Don't let your guard down
PCI compliance without costly consultants
Compliance regulations: Understanding the dirty dozen
IT audits: Five fearless strategies for survival
An Auditor Among Us
How to audit server room security
(by the numbers)
Answers for Auditors - (problem solved)
Audit Trail: Inside the Mind of an IT Auditor
Audit Trail: Sifting Through an Audit, the Wheat from the Chaff

Desktops and laptops for the midmarket
Laptop theft easily preventable while on the road
Gartner warns of misguided virtualization strategies
Is IT Really in Charge? - (by the numbers)
Linux desktop: Simpler, more secure than Windows
Mousing on Air - (gadget)
Dell pledges SMB support with launch of new PCs
SearchSMB.com: Second-quarter recap
Virtual desktops: Cheap and effective
Hewlett-Packard fires up new PC blades
PCs, servers and tools for the midmarket

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2007 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts