sted Posted November 17, 2011 Posted November 17, 2011 ive got a 2008r2 server and for some reason while on a client i can get to \\server\share on the server itself i cant i just get Windows cannot access you dont habe permission (and the same if i go to d:\share) it almost looks as if uac is turned on (which it isnt) if i add my account to the file as a named account it works again but im a member of domain admins adding that group to a folder dosent help any ideas as its just silly p.s. if i run cmd prompt as admin i can get to the folders
doubledee Posted November 21, 2011 Posted November 21, 2011 Check the permissions on both the share and the filesystem to see if you have access. Even though you are a member of the Domain Admins group both the share and file system may have explict permissions on them thus denying you access
sted Posted November 21, 2011 Author Posted November 21, 2011 Check the permissions on both the share and the filesystem to see if you have access. Even though you are a member of the Domain Admins group both the share and file system may have explict permissions on them thus denying you access nope permissions are fine and from a workstation i can get to the folders its just on the server i cant get to certain folders
doubledee Posted November 21, 2011 Posted November 21, 2011 Sorry i misread your original message. It still sounds like a security problem to me. Which account are you logging into the server as?
sted Posted November 21, 2011 Author Posted November 21, 2011 Sorry i misread your original message. It still sounds like a security problem to me. Which account are you logging into the server as? normally mine (direct copy of domain admin account but tried another account same issue
alexsanger Posted November 21, 2011 Posted November 21, 2011 So to confirm: 1) The user account being used is a member of domain admins. 2) The Domain Admins group has full NTFS permissions on the folder being shared 3) The Domain Admins group has full access on the share (e.g. "Everyone" has full control or group explicitly added and set) 4) The server in question and the user account are in the same domain in AD
sted Posted November 21, 2011 Author Posted November 21, 2011 So to confirm: 1) The user account being used is a member of domain admins. 2) The Domain Admins group has full NTFS permissions on the folder being shared 3) The Domain Admins group has full access on the share (e.g. "Everyone" has full control or group explicitly added and set) 4) The server in question and the user account are in the same domain in AD yes to all 4
alexsanger Posted November 21, 2011 Posted November 21, 2011 (edited) OK. Have you gone into the Advanced security settings on the target folder and checked details of the permissions in there? Are permissions for Domain Admins inherrited or explicitly defined on that folder? Are any domain groups or accounts members of the local Administrators group on the server? Edited November 21, 2011 by alexsanger
hermand Posted November 21, 2011 Posted November 21, 2011 Have you tried checking it with Effective Permissions? Edit: Try logging on as the LOCAL administrator to try this.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now