DFS-N restrict drag and drop folder contents

We are looking into migrating to DFS Namespaces but ran into an issue.

Is there a way to prevent users from moving the contents of a namespace folder (link) to another namespace folder within the same DFS namespace?
When viewing the namespace (\\domain.local\share\) and the shared folders within, users can move the contents by dragging and droping to a different share.

For example, consider this structure

\\domain.local\Share
-------- Folder1
-------- Folder2
-------- Folder3

Users can drag and drop Folder3 into Folder1. The Folder3 link stays there, but the contents (on which they have NTFS permissions) will be moved inside folder1. 

Accidental drag and drop happens and it can be a disaster on top level folders. 

On our old structure, using simple folder shares, accidental drag and drop has harmful effects. You only create a link inside the destination folder.

Hope someone can help me in finding a solution.

Thanks


September 1st, 2015 11:43am

Hi,

I'm afraid we do not have a proper solution for such accident.

We can remove Write permission on root folder so that users will not able to delete/move/rename a root folder. But contents will still be moved if we accidentally drag and drop a root folder into another folder.

It is not recommended to remove Delete permission (which could stop Move but not Copy) on files either. Deny Delete will cause issues on renaming files and it will specifically affect Office files from editing.

You will have to train your users from not make such mistake on dragging folders. 

Free Windows Admin Tool Kit Click here and download it now
September 2nd, 2015 3:25am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics