chazzy2501 Posted January 12, 2016 Posted January 12, 2016 ok... So this is embarrassing as I can't do this most basic task... folder in mapped drive available to all staff, I've remove inherited perm and explicitly set a new security group for just science teachers. it doesn't work???! The teachers are in the security group (sci folder) the sci folder security group is in the ACL for the folder (all but full perms)... I have no deny perms, effective perm tell me that any teacher I select has the correct perms for any file or folder within the folder.... they keep getting access denied? errrr.. what am I missing?
sted Posted January 12, 2016 Posted January 12, 2016 were they in the group when they logged on as if you add a user to a group it dosent make any odds until they log off and back on again 1
chazzy2501 Posted January 12, 2016 Author Posted January 12, 2016 were they in the group when they logged on as if you add a user to a group it dosent make any odds until they log off and back on again Really? I didn't know that thanks... I'll test that now.
Michael Posted January 12, 2016 Posted January 12, 2016 On the root of the share/folder (from your server), open up Properties and select the Security tab. Click Advanced > Change Permissions. Tick 'Replace all child....' then click OK. This will apply your ACL to all subfolders and files underneath it. If you can't get this far, it is normal to set Domain Admins (which should be yourself), which allows you to administer the share for end users.
3s-gtech Posted January 12, 2016 Posted January 12, 2016 (edited) Also, check the Sharing permissions on that mapped drive (you'll need to look on the server(s)). These will completely override any ACLs. Easy one to miss. Right-click on the share->Sharing->Advanced Sharing->Permissions Edited January 12, 2016 by 3s-gtech
chazzy2501 Posted January 12, 2016 Author Posted January 12, 2016 The mapped drive and parent folder is shared to "everyone" just the way the old boss did it and not really an issue.
LukeC Posted February 8, 2016 Posted February 8, 2016 Authenticated users is better to use instead if everyone
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now