Re: granting folder access to network users



Thanks to both for the help. I was trying to map a share incorrectly by
including root and subfolders that the user did not have access to when
setting up the path.

I have received proper info on \\server\share.

thanks again

"Meinolf Weber" wrote:

Hello biff,

See inline.

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm


Does the user have to be in a security group? Before I just added
them as a username. Is the security group just for organizational
purposes?

Yes, you have a better overview and not a lot of single user accounts in
the list. It is really easier to work with groups for configuring permissions
on a share.

When you set "authenticated users" to full control does that mean
anyone with an active directory account could connect?

All "authenticated users" are domain user accounts that are known by AD.

In the NTFS security tab, what does giving "system" full control
accomplish?

On a normal file share it is not necessary to add system. But the system
account is used for example form the windows installer when new software
will be installed, so sometime the system account is useful.

I am really confused on why this person could not map the way I set it
up before. I gave the username full access on share permissions and
modify NTFS permissions but whenever we tried to map to the share, we
got "access is denied". How could that be?

Please post the complete share permissions and the folder NTFS permissions,
including the top folders if exist.


"Meinolf Weber" wrote:

Hello biff,

In AD create a security group and add the user to this group. Create
your folder, share it and set the "share permissions" for
"Authenticated users" and "Administrators"to full control, all other
groups remove. Then choose the security tab of the folder and add the
before created security group. Here also leave "Administrators" and
"System" with full control and set for the security group the
permissions they should get.

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and
confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
When granting a Active Directory user access to a folder on a
server, do I have to add the user to the Users group on the Server?

Is is the only thing I have to do is share the folder and grant the
user permissions on the share?

Does a user have to logoff and log back in when these changes are
made?




.



Relevant Pages

  • Re: For those of you who have disabled UAC while using user/admin, you dont have full admin rights &
    ... In Vista, an admin user doesn't have permissions to ... has the ability to take ownership and change permissions. ... all one has to do is add a second user account on the folder ...
    (microsoft.public.windows.vista.general)
  • Re: User Account lost when XP had to be reinstalled
    ... you can set XP Home permissions in Safe Mode. ... This is not your administrator account, ... >Open Explorer, go to Tools and Folder Options, on the ... >tab, click advanced, go to the Owner tab and select the ...
    (microsoft.public.windowsxp.accessibility)
  • Re: For those of you who have disabled UAC while using user/admin, you dont have full admin rights &
    ... In Vista, an admin user doesn't have permissions to do everything they did in previous verions of Windows, but still has the ability to take ownership and change permissions. ... Really, all one has to do is add a second user account on the folder or file and give full rights as like the Administrator group, which would be the User account of the user/admin that logs into the machine. ...
    (microsoft.public.windows.vista.general)
  • Re: For those of you who have disabled UAC while using user/admin, you dont have full admin rights &
    ... In Vista, an admin user doesn't have permissions to do everything they did in previous verions of Windows, but still has the ability to take ownership and change permissions. ... Really, all one has to do is add a second user account on the folder or file and give full rights as like the Administrator group, which would be the User account of the user/admin that logs into the machine. ...
    (microsoft.public.windows.vista.general)
  • Re: Unlock acct permissions
    ... >>>>-->>Joe Richards Microsoft MVP Windows Server Directory Services>>www.joeware.net>> ... I'm just trying to give a user>>>account unlock permission for an OU by making them a member of a security>>>group in that OU with permission to unloack accounts. ... Every one will have to full admins unless I can make>>>this Windows permissions work as desired. ... The correct permissions are on the security group, the user I>>>>>added to the security group still cannot do anything with account unlock or>>>>>password reset. ...
    (microsoft.public.win2000.active_directory)