RE: Access Denied After AD Migration

From: Rebecca Chen [MSFT] (v-rebc_at_online.microsoft.com)
Date: 01/04/05


Date: Tue, 04 Jan 2005 11:21:57 GMT

Hello,

Do you grant the permission to the individual user account or the group?

Please use check_sd to gather the info as I have mentioned and send to
v-rebc@microsoft.com for research.

As Tom mentioned, you can also try xcacls. Please take a look at the
following link:

How To Migrate Objects from One Domain to Another in Windows NT
http://support.microsoft.com/default.aspx?scid=kb;en-us;301940

Using the Command Line to Edit Multiple Subdirectory Permissions
http://support.microsoft.com/default.aspx?scid=kb;en-us;265360

Best regards,

Rebecca Chen

MCSE2000 MCDBA CCNA

Microsoft Online Partner Support
Get Secure! - www.microsoft.com/security

=====================================================

When responding to posts, please "Reply to Group" via your newsreader so
that others may learn and benefit from your issue.

=====================================================
This posting is provided "AS IS" with no warranties, and confers no rights.



Relevant Pages

  • Re: Allowing Anonymous write access only.
    ... need at least READ permission for login. ... > been set up so that anonymous FTP users have write access only, this> may seem insecure and we do get a certain ammount of hackers or> taggers testing the system by dropping test files and folders onto the> server, but because anonymous users do not have read access they soon> find that they cannot download anything they upload and go elsewhere. ... This is where my problems have started,> I initialy replicated all the IIS setting and NTFS permission from my> NT box on my 2003 box but so far have been unable to achive the same> result, it appaers that I can only grant anonymous write access if I ...
    (microsoft.public.inetserver.iis.ftp)
  • Re: Yukon schemas
    ... ALTER to the schema. ... you have to grant create permission to perform the action ... data and to create and alter stored procedures and views that they owned. ...
    (microsoft.public.sqlserver.security)
  • Re: Local admin right
    ... use Group Policy Restricted Groups to enforce membership of local computer ... > account to local admin group to run some applications. ... > used this permission to grant someone else to access that box too. ...
    (microsoft.public.security)
  • Re: AppArmor Security Goal
    ... permission to /home/$user/.mozilla...... ... and grant each user access to only ... two shell scripts (one to start each browser profile) and set the AA policy ...
    (Linux-Kernel)
  • RE: Share Issues
    ... Where are the others shares located, in the old domain or new win2k3 ... How do you grant the permission to the "other shares", ... Microsoft Active Directory: Demo 3-Security Translation Wizard ...
    (microsoft.public.windows.server.migration)