Jump to content

Recommended Posts

Posted

We have found issues with permissions on the SIMS/Setups folder when updates roll out in the past, that seem to require write permission on it,so we have ours set up that way, but I think this is the only place where most SIMS users would need write permissions these days.

 

Most of our SIMS users have read/execute on the main SIMS folder, Exams Officer has read/write/create on the EXAMIN, EXAMOUT and EXAMHOLD folder. MIS Manager has the same on LEA and the subfolders (for PLASC and CTF files and such) Timetabler full control of the SNOVA folder. In normal use, I'm not sure that there is anything that a typical teacher user needs to access in the SIMS folder at all, apart from connect.ini if, as on our system, there is a redirect to a central copy.

 

When we moved SIMS to our new shiny server just before Christmas, these were the only folders we copied over; on our old server the SIMS folder was full of junk going right back to the old dBAse files.

 

....it was a simpler time when you could correct most SIMS problems by deleting the (very many) index files.

Posted
Does anyone actually know "best practice" set of permissions for the SIMS folder on the server? I've been looking for weeks and no one seems to know!!

 

We run SIMS over Terminal Services, and I think giving users read/write access to a folder inside the Program Files folder would be a bad idea. However that, of all places, seems to be where the QuickLetterTemplate.doc file lives. Therefore, I've just written a Windows service that monitors a separate shared folder with a copy of QuickLetterTemplate.doc in it and copies that file from there as soon as it changes. This way, users csan be given read/write access to the file they want (QuickLetterTemplate.doc) without letting them blunder around in the Program Files folder.

 

--

David Hicks

Posted

2 Groups - SIMS users and SIMS admins

 

SIMS admins have modify rights to the whole sims drive.

 

SIMS users have read only rights to the SIMS directory and sub Directories only. Works for us. :)

 

On the local machines simsperm.bat is run to set SIMS users to modify rights.

 

Mike.

  • 2 weeks later...
Posted
Therefore, I've just written a Windows service that monitors a separate shared folder with a copy of QuickLetterTemplate.doc in it and copies that file from there as soon as it changes.

 

I copy the most up-to-date quicklettertemplate in during logon. They have write access to the sims program files folder as per simsperm.bat, but can't browse to the folder because of GPO settings. It's never been a problem for us, because the template doesn't save into program files by default - it all saves to the DMS now anyway.

 

There has never been a need for staff to have full access rights to use or upgrade SIMS.

 

Try removing their write access then installing the client. HINT: It shouldn't try to write to every bleeding folder under s:, but it does.

 

As far as simsperm goes, it's OK but not perfect. SIMS still does some incredibly stupid things which need manual intervention to sort out. Off the top of my head I can think of:

 

c:\windows\omrconfig.ini - a file created at the point when you first try to save OMR settings. Typically this will be way after installation and under a normal user account. Therefore an EPIC FAIL awaits. Why they can't consolidate all their bad practice and drop it in the program files SIMS folder I don't know.

 

c:\pdoxusrs.net - Used by FMS. Again not created during install and requires write access by users. You may notice that it looks like it has something to do with a Paradox database. You may wonder what on earth an 1990s relic is doing in FMS which is now a wizzy, modern, MSSQL-based application. Me too. It's still needed though.

Posted
We run SIMS over Terminal Services, and I think giving users read/write access to a folder inside the Program Files folder would be a bad idea. However that, of all places, seems to be where the QuickLetterTemplate.doc file lives. Therefore, I've just written a Windows service that monitors a separate shared folder with a copy of QuickLetterTemplate.doc in it and copies that file from there as soon as it changes. This way, users csan be given read/write access to the file they want (QuickLetterTemplate.doc) without letting them blunder around in the Program Files folder.

 

--

David Hicks

 

 

It now also looks in the My Sims Documents folder (within My Docs).

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...