maillog is usually managed by syslog, not postfix directly.
Restarting syslog should be enough, as permissions just guarantee that they are like other files in / var / log, and that should be enough.
On my debian system, all the logs belong to either root: adm or root: root, usually have 644 or 640 mode (u + rw, g + r, optional o + r)
And on debian / ubuntu restart syslog: /etc/init.d/sysklogd restart
On RHEL / CentOS: restarting the syslog service