On 1/12/23 12:58, Bruno Haible wrote:
   1. remove the ALLOWing part of the old ACL,
   2. add the DENYing part of the new ACL,
   3. copy the data,
   4. remove the DENYing part of the old ACL (as far as not also contained
      in the new ACL),
   5. add the ALLOWing part of the new ACL.

Something like that, no?

Yes, this sounds good, although things are more complicated on systems where ACLs and the traditional Unix permissions are set separately and the two interact.

Reply via email to