[HTCondor-users] Restricting directory access on execute machines

Hi All,

I am working on expanding our existing workstation condor pool and have gotten some concerned questions about what directories a submitted job can access in the local file system beyond <$(LOCAL_DIR)/execute> and any temp directories set up by HTCondor daemons. Reading through the security section of the docs, the projects effort focuses on unauthorized access to the pool and presuming granted access will not abuse resource access permissions.

Any recommendations on how to allay fears from folks not familiar with distributed computing about users wiping out each others work?