Team Site Security for Site Owners - BPC11 - March 2011

Post on 15-Jan-2015

1.281 views 0 download

Tags:

description

Presented at SharePoint Best Practices Conference in LaJolla.

Transcript of Team Site Security for Site Owners - BPC11 - March 2011

BEST PRACTICES CONFERENCE SHAREPOINT

Clarity. Direction. Confidence.

@veroniquepalmer #BPC11

TEAM SITE SECURITY FOR END USERS

Veronique PalmerSharePoint MVP

March 2011

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

PLAN!PLAN!PLAN!

3 Words

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Confusing Terms

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Hierarchy

SCA’s

Site Owners

Site Members

Site Visitors

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Site Level

List / Library Level

Item Level

Options

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Site Owner Tools

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Version Comparison

BUILT IN REPORTING!

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

SharePoint 2007 Management

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

SharePoint 2007 Management

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

2007 Essentials

DOCUMENT!

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

SharePoint 2010 Management

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

SharePoint 2010 Management

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

2010 Essentials

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

2010 Limits

50 000 ceiling on limited access per list / library

10 000 user groups per site collection

5 000 users per Active Directory group

5 000 groups each user can belong to

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

ARCHITECTINGYOUR SITE

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Everyone Just YouYour Team

Who Needs to See the Info?

Team Site My SiteIntranet

Who Are WeWhat We DoContact Us

EditRead

No Access

Shared DocsPersonal Docs

Not Ops

Inherited You DecideUnique

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Inherited vs Unique SitesHR Top level site

Unique Permissions

HR Members,

Owners, Visitors

Policies Top Level Site

Unique Permissions

Policies Members,

Owners, Visitors

Operational Subsite

Inherited Permissions

Policies Members,

Owners, Visitors

Training Subsite

Inherited Permissions

HR Members,

Owners Visitors

Vendors Top Level Site

Unique Permissions

Vendors Members,

Owners, Visitors

Courses Top Level Site

Unique Permissions

Courses Members,

Owners, Visitors

Discipl Top Level Site

Unique Permissions

Discipl Members,

Owners, Visitors

Dismissed Top Level Site

Unique Permissions

Dismissed Members,

Owners, Visitors

Court Cases Subsite

Inherited Permissions

Dismissed Members,

Owners, Visitors

Recruitment Subsite

Inherited Permissions

HR Members,

Owners, Visitors

Int Placements Subsite

Inherited Permissions

HR Members,

Owners, Visitors

Ext Placements Subsite

Inherited Permissions

HR Members,

Owners, VisitorsInheritance is broken, what you do here will not affect the site above it.

What you do on the site below affects the site above and vice versa!

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

AD vs SharePoint Groups

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Active Directory Groups

Company Structure Accurate

Security Groups

Channels to Edit

Intranet Sites

Pros

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Cons

Active Directory Groups

Rules Confusion

Site Not on My Sites

Can’t See Users

Team Sites

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

NEW GROUPMANAGEMENT

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

New Group Management Both

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

New Group Management Both

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

New Group Management 2007

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

New Group Management 2010

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

New Group Management 2010

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

New Group Management Both

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

New Group Management Both

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

DELETERIGHTS

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Delete Rights on Members

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Delete Rights on Members

Governance

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Delete Rights in Foundation

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

View All Users in Foundation

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

LIMITED ACCESSCHAOS

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Limited Access 2007 Chaos

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Limited Access 2007 Chaos

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Limited Access 2007 Chaos

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Limited Access 2007 Chaos

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Limited Access 2007 Less Chaos

LIBRARYLEVEL

x ??

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Limited Access 2007 Less Chaos

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Limited Access 2007 Less Chaos

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Limited Access 2010 Better!

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

UNIQUEPERMISSION SITES

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Unique Permission Sites Both

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

GOTCHASSUMMARY

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Management in 2007

Foundation 2010

Limited access chaos

AD group challenges

Inherited site implications

New group governance

Delete rights governance

Teaching beginnersETC!!

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Worst Practices

• Permissions on doc level

• Adding users outside groups

• Inheriting on team sites

Best Practices

• Use default groups

• Add URL to new group

descriptions

• Get proper training at the

right time

33

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

THING

Document!

Plan and

etc

There is no undo button!

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Site Hierarchy Poster

http://www.letscollaborate.co.za/Resource-Centre/LCs%20Documents/Poster%20-%20SharePoint%202007%20-%20Site%20Permissions%20for%20End%20Users%20v1.1.pdf

Site Collection Administrator and Farm Administrator Duties

http://office.microsoft.com/en-us/sharepoint-server-help/permissions-for-site-collection-administrators-HA101943260.aspx?CTT=1

More Info for Site Collection Administrators

http://office.microsoft.com/en-us/sharepoint-server-help/control-user-access-with-permissions-HA101794487.aspx?CTT=5&origin=HA101794118

SharePoint 2010 Groups and Permissions Reference Chart

http://office.microsoft.com/en-us/templates/results.aspx?qu=SharePoint&origin=HA101943260&CTT=5#ai:TC101977256|

Control Access to a Specific Piece of Content

http://office.microsoft.com/en-us/sharepoint-server-help/control-access-for-a-specific-piece-of-content-HA101805400.aspx?CTT=5&origin=HA101794118

Resources 1

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

All SharePoint Permissions articles from Microsoft

http://office.microsoft.com/en-us/sharepoint-server-help/results.aspx?qu=sharepoint%20permissions&origin=HA010379092&queryid=6da473d6a2754ac1ad638d36e08e6640

Configure Permissions for a Blog in SharePoint 2007

http://office.microsoft.com/en-us/sharepoint-server-help/configure-permissions-for-a-blog-HA010021567.aspx?CTT=1

Online Course to Learn Excel Services Permissions in SharePoint 2007

http://office.microsoft.com/en-us/sharepoint-server-help/excel-services-ii-requirements-recommendations-and-permissions-RZ010285649.aspx?CTT=1

Resolving Conflicts in SharePoint Workspaces 2010

http://office.microsoft.com/en-us/sharepoint-workspace-help/resolving-conflicts-and-errors-in-sharepoint-workspace-HA010382158.aspx?CTT=1

Working with Permission Levels

http://office.microsoft.com/en-us/sharepoint-server-help/edit-create-and-delete-permission-levels-HA101805381.aspx?CTT=5&origin=HA101794118

Choosing a Security Group

http://technet.microsoft.com/en-us/library/cc261972.aspx

Resources 2

BEST PRACTICES CONFERENCE SHAREPOINT

@veroniquepalmer #BPC11

Resources 3Manage Memberships of SharePoint 2010 Groups

http://office.microsoft.com/en-us/sharepoint-server-help/manage-membership-of-security-groups-HA101794106.aspx?CTT=5&origin=HA101794118

Setting Permissions on Views

http://www.sharepoint911.com/blogs/laura/Lists/Posts/Post.aspx?ID=76

Allowing Anonymous Users to Comment on Blogs

http://www.sharepointedutech.com/2011/01/20/how-to-allow-anonymous-users-to-comment-on-a-sharepoint-2010-blog/

TechNet Article on How Permissions Work (Level 300)

http://technet.microsoft.com/en-us/library/cc262690.aspx

Restricting Access for Search Purposes

http://office.microsoft.com/en-us/sharepoint-server-help/enable-content-to-be-searchable-HA010379092.aspx

SharePoint Security Issues

http://community.bamboosolutions.com/blogs/sharepoint-2010/archive/2010/06/09/teched-2010-sharepoint-security-permissions-identities-amp-objects-including-a-gotcha-that-breaks-security-trimming.aspx

BEST PRACTICES CONFERENCE SHAREPOINT

Clarity. Direction. Confidence.

@veroniquepalmer #BPC11

Please be sure to fill out your session evaluation!

veronique@letscollaborate.co.za

www.letscollaborate.co.za

THANK YOUFOR YOUR TIME

SAN DIEGO