You can certainly deny them delete access to a folder using regular file / folder security. It sounds like you need some kind of auditing, you could store all the files in a database, and that way users can only get at them via whatever applications you give them, but of course with so many files that could end up being a large database.
↧