Sharepoint custom permissions & security
By peter.stilgoe
SharePoint Groups
SharePoint groups are created at the site collection level and are available to be used in any site in the site collection. You cannot have SharePoint groups inside a SharePoint group, but you can have an active directory group in a SharePoint group.
Permission Inheritance
Each object inherit permissions from parent by default.
Site collection –> Site –> Doc Library –> Folder/Document
Permission inheritance is an all or nothing approach. If you want to add custom permissions to child objects then it becomes detached from the parent object. If you decide to switch back to inheritance permission all of your unique permission will be discarded.
Create Custom Permission Level
Site Actions –> Site Settings
Users and permissions –> Advanced permissions
Select Manage Permissions of Parent from the Actions menu
Select Permissions Levels from the Settings menu
Click Edit Permissions Levels –> Add a Permission Level
Type a name and description for new permission level and select the permissions to assign.
Managing Authorisation
Create and use SharePoint groups as often as possible. Adding individual user accounts increases work to maintain security.
More From pstilgoe



March 5th, 2008
