UNSOLVED

tesh1

updated

15 years ago

T

tesh1

6 Posts

0

403

March 10th, 2011 12:00

File System Access Rights

I have 3 CIFS servers all on Server_2

FAPCIFS01 & 03 attached to Domain ABC

FAPCIFS02 attached to Domain DEF

Domain ABC & DEF have trust between them, fully working.

All 3 have been added into AD and can been seen in Server & Computers.

The Domain Admins are able to access “C$” for FAPCIFS01 & 03, however they cannot access the “C$” on FAPCIFS02 and are presented with error to contact Domain admin for rights.

I have tested access to standalone W2K8 server “C$” on both domains using the same account and I am able to access the "C$" on those servers fine.

If I create a new share on FAPCIFS02 “testshare” and I test access all works. However I cannot access the hidden “C$”

Any pointers?

  • Rainer_EMC

    6 Operator

    8645 Posts

    169

    0

    Posted March 10th, 2011 14:00

    You need to put the other domains administrator group into the Celerra CIFS servers local admin group

  • tesh1

    6 Posts

    169

    0

    Posted March 11th, 2011 01:00

    I cant even use MMC Computer manager to access the CIFS server to administer local groups.

    Are you saying that I need to enable local groups for the CIFS server in question?

    If so, why am I able to access the CIFS servers\C$ on Domain ABC without adding local groups?

    As I said all CIFS Server in Domain ABC & DEF are joined to the domains fully.

  • Rainer_EMC

    6 Operator

    8645 Posts

    169

    0

    Posted March 11th, 2011 10:00

    Local groups are always enabled – they are need for CIFS in a domain to work properly

    It works for the domain that you joined because by default that domain gets put into the Celerra CIFS server local administrators group when you join

    In order to use MMC the best way to ensure you can access is to first map a share to a drive letter as an administrative user of its domain so that you have the security context.

    Rainer