Question

How do I get full access to a network computer hard drive using UNC path network browsing?

Asked by: SDOIT

I am having a problem connecting to just one Windows XP (SP3) computer on our network via its UNC path (\\computername\c$). Error message: The network path was not found.  I also cannot connect using the UNC path with an IP address (\\ipaddress\C$) so I know it is not a DNS issue.  The computer is visible on the Windows Network. I can connect to it via Remote Desktop with a  domain admin account. Domain Admins have Full Control on the default C$ share. Windows firewall is turned off on that computer. Simple file sharing is selected on the C drive. File and Printer sharing for Microsoft Networks is installed on LAN. I have enabled Netbios over TCP/IP but that does not make a difference. I need to be able to connect via the UNC path so I can run a backup on this computer. I do not have this problem with any other Windows XP computer on my network. What am I missing?

This Question has been solved and asker verified All Experts Exchange premium technology solutions are available to subscription members.

Subscribe now for full access to Experts Exchange and get

Instant Access to this Solution

  • Plus...
  • 30 Day FREE access, no risk, no obligation
  • Collaborate with the world's top tech experts
  • Unlimited access to our exclusive solution database
  • Never be left without tech help again

Subscribe Now

Asked On
2009-07-31 at 16:35:05ID24618184
Tags

Network file access via UNC path

,

Windows XP

,

File sharing

,

Windows network

Topics

Windows XP Operating System

,

Networking Protocols

,

Miscellaneous Networking

Participating Experts
4
Points
500
Comments
17

Trusted by hundreds of thousands everyday for fast, accurate and reliable tech support.

  • "The time we save is the biggest benefit of Experts Exchange to Warner Bros. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange." Mike Kapnisakis, Warner Bros.
  • "Our team likes having a resource that is more secure than just using Google and most experts using this service really know their stuff. It's nice to look here first versus using Google." Dayna Sellner, Lockheed Martin
  • "Anytime that I've been stumped with a problem, 9 out of 10 times Experts Exchange has either the accepted solution or an open discussion of the potential solution to the problem." Kenny Red, eBay Inc.

See what Experts Exchange can do for you.

Got a question?

We've got the answer.

Experts Exchange has been collecting answers to technology questions since 1996…3 million and counting! If you have a question, chances are we already have your answer.

Screenshot of Experts Exchange Knowledgebase

Need individual assistance?

Our experts are ready to help.

If you can't find the exact answer you're looking for, ask our exclusive community of 50,000 experts. You’ll get a personalized answer from a trusted professional.

Screenshot of Experts Exchange Knowledgebase

Want to learn from the best?

Read articles from industry experts.

Thousands of free tech tips, tricks, how-to’s and tutorials are available in our peer reviewed articles section. See for yourself how smart our experts are, no login required.

Screenshot of an Article

Working on a long term project?

Store your work and research.

Save solutions to your questions, answers you’ve discovered through searching plus helpful articles in your personal knowledgebase for easy future access.

Screenshot of Experts Exchange Knowledgebase

Access the answers to your technology questions today.

Subscribe Now

30-day free trial. Register in 60 seconds.

What Makes Experts Exchange Unique?

Members of the expert community talk about why the experience at Experts Exchange is different than what you will find anywhere else.

Trusted by the world's most respected brands.

image of each brand's logo

Faithfully serving IT professionals since 1996.

Experts Exchange Logo

Try it out and discover for yourself.

Subscribe Now

30-day free trial. Register in 60 seconds.

Related Solutions

  1. UNC path question
    I need to access some resources that is on an AS/400. From NT they can be accessed with UNC path like \\10.0.1.45\sharename\filename, but this don't seem to work on Windows 98. Is it possible to make this work on Windows 98 (by installing a servicepack or something), or is i...
  2. UNC
    Hi Experts, I've found an expression, but I don't know what it means. This is UNC and can be the path (???) to reach a remote InterBase server. Thanks for any help!! wbr Janos
  3. Using %computername% in UNC
    The %username% variable can be used in a UNC path for a profile directory. [e.g. \\servername\Profiles\%username%]. It's also possible to use the %LogonServer% variable in the UNC path such as %LogonServer%\Profiles\%username%. But is it possible to use the %computername% ...
  4. UNC path
    I would like to know what protocol used and what service is used when accessing a device with UNC path. example: \\servername does it use ICMP + DNS service? does it use ICMP + WINS service? any idea? thanks
  5. UNC Authentication
    Hello ladies and gents. I am getting a problem with one of my windows 2003 SP1 server machines. When you normall UNC to a 2003 server not joined to a domain you get asked for login credentials to view the shared resources, however after running the recent windows updates and...
  6. Users UNC access
    I would like for users to be able to UNC to a stand alone 2003 server. How can I give them rights to only do so?

Free Tech Articles

  1. WARNING: 5 Reasons why you should NEVER fix a computer for free.
    It is in our nature to love the puzzle. We are obsessed. The lot of us. We love puzzles. We love the challenge. We thrive on finding the answer. We hate disarray. It bothers us deep in our soul. W...
  2. SCCM OSD Basic troubleshooting
    SCCM 2007 OSD is a fantastic way to deploy operating systems, however, like most things SCCM issues can sometimes be difficult to resolve due to the sheer volume of logs to sift through and the dispe...
  3. Migrate Small Business Server 2003 to Exchange 2010 and Windows 2008 R2
    This guide is intended to provide step by step instructions on how to migrate from Small Business Server 2003 to Windows 2008 R2 with Exchange 2010. For this migration to work you will need the fo...
  4. Create a Win7 Gadget
    This article shows you how to create a simple "Gadget" -- a sort of mini-application supported by Windows 7 and Vista. Gadgets can be dropped anywhere on the desktop to provide instant information, ...
  5. Outlook continually prompting for username and password
    There have been a lot of questions recently regarding Outlook prompting for a username and password whilst using Exchange 2007. There are a few reasons why this would happen and I will try to cover t...
  6. Backup Exchange 2010 Information Store using Windows Backup
    There seems to be quite a lot of confusion around the ability to backup Exchange 2010 using the built in Windows Backup feature. This stems from the omission of this feature prior to Exchange 2007 s...

Cloud Class Webinars

  1. Avoiding Bugs in Microsoft Access
    Alison Balter takes and in-depth look at avoiding bugs in Access. In this webinar you will learn about using the immediate window to debug your applications, invoking the debugger, using breakpoints to troubleshoot, stepping through code, setting the next statement to execute, ...
  2. Top 10 Best New Features in Visio 2010
    Scott Helmers gives live demonstrations of the top 10 new features in Visio 2010. This webinar will teach you how to create compelling diagrams by adding shapes to the page with a single click, linking the shapes in a diagram to data in Excel (or SQL Server, or SharePoint), ...
  3. IT Consultant Business Secrets Revealed
    Michael Munger, Experts Exchange tech pro and IT consultant, pulls back the curtain on his very successful businesses and answers question on every IT consultant and business owner should know about. He shares secrets on what he did to solve the 5 most common problems in IT, ...
  4. Disaster Recovery and Business Continuity
    Quest CTO, Mike Billon, gives an overview of the steps involved in building a dunamic disaster recovery plan. Through case studies and an examination of software/hardware tooles for monitoring and testing, you'll gain a better understandin of where you are, where you want ...
  5. Organize Your Visio Diagrams with Containers and Lists
    Scott Helmers uses cross functional flowcharts, wireframe diagrams, data graphic legends and seating charts to teach you: how to ustilize all three new structured diagram components in Visio 2010, the best practices for organizeing shapes in previous version of Visio, how to organize ...
  6. How to Us Objects, Properties, Events and Methods in Microsoft Access
    Alison Dalter gives an in-depbth look at objects, properties, events and methods in Microsoft Access. In this webinar you will learn about using the object browser, referring to objects, working with properties and methods, working with object variables, understanding the ...

Join the Community

Give a Little. Get a Lot.

Join the community of experts here and help other tech pros by answering question in your area of expertise. You can earn FREE access to all Experts Exchange's premium features and resources.

Join the Community

Answers

 

by: samenglishPosted on 2009-07-31 at 17:22:27ID: 24993489

Have you RDP'd to that PC and checked all that you've stated above?

 

by: SDOITPosted on 2009-07-31 at 17:25:43ID: 24993500

Yes. I have been working on that computer via RDP.

 

by: DaveBaldwinPosted on 2009-07-31 at 17:47:08ID: 24993559

From http://support.microsoft.com/kb/304040/ :

When Simple File Sharing is turned on, remote administration and remote registry editing does not work as expected from a remote computer, and connections to administrative shares (such as C$) do not work because all remote users authenticate as Guest. Guest accounts do not have administrative rights. When Simple File Sharing is turned on, if you configure specific user ACEs, remote users are not affected when Simple File Sharing is turned on because all remote users authenticate as Guest when Simple File Sharing is turned on.

 

by: samenglishPosted on 2009-07-31 at 17:57:08ID: 24993580

so, switch Simple File Sharing off and assign permissions the old fashioned way... but why is it working on the other PC's?

 

by: DaveBaldwinPosted on 2009-07-31 at 18:09:10ID: 24993616

I don't know.  The only reason I remembered this is because I wanted to setup a remote logon to one of my XP computers and I had to go thru this (and create a new user) to be able to logon.  Even then it was only to the particular directory where I had changed permissions and added the new user.

I would go to one of the 'other' computers and see if maybe someone already went thru the procedure to allow logon access.  On the other hand, if simple file sharing is turned on, you should (?) be able to access the drive by name like \\computer\c12 or whatever without a logon.  That's the way it works here except that I'm in a workgroup, not a domain.

 

by: blohrerPosted on 2009-07-31 at 18:54:23ID: 24993748

Are you a domain admin?

You cannot connect to a C$ share unless you are an admin/domain admin account.

Only reason I ask is that you say "I can connect to it via Remote Desktop with a  domain admin account. Domain Admins have Full Control on the default C$ share"  which makes me believe you are not using a domain admin account to access it.

 

 

by: SDOITPosted on 2009-07-31 at 21:57:30ID: 24994125

Yes. I am a domain admin, and I am connecting via a domain admin account and password.

Normally if I try to connect to a share via UNC with a non admin account a window will pop up requesting a username and password. In this instance I never see that window. I just get the error message that the "network path was not found".

I am able to browse to other computers on the network from the problem computer. I definitely have network connectivity. I'm guessing there must be some network share permission, or some protocol configuration I've missed?

 

by: ComputerGeekJsyPosted on 2009-08-01 at 02:36:40ID: 24994674

Hi

Leave the Simple File Sharing switched off.

Open Control Panel > Administrative Tools > Local Security Policy > Security Settings

Change the 'Local Policies > Security Options > Network Access: Sharing and Security Model For Local Accounts' option from 'Guest Only' to 'Classic - local users authenticate as themselves'

Hopefully this works.  I have had to use this on countless occasions, especially for deploying Sophos in a peer to peer windows network.  If it does work, then you could obviously deploy this to your network using a Group Policy.

Let me know how you get on.

 

by: SDOITPosted on 2009-08-03 at 10:26:08ID: 25006472

That was a good suggestion. I had not thought of looking at the local security policies. Unfortunately it did not address the problem. I am still having UNC path and browsing problems when I try to access that computer. RDP works fine and of course I can ping that computer from any other computer on my domain. Although the computer shows up when I browse to Microsoft Windows Network > Domain if I try to click on it I get the following error message: \\computername is not accessible. You might not have permission to use this network resource. Contact the administrator of this server to find out if you have access permissions. The network path was not found.

Run > \\UNCpath\C$  simply returns the error message: The network path was not found.

I looked at the Local Disk security permissions and found that the Everyone account was missing. I added the Everyone account (this is temporary - I realize this is not a best practice) and allowed the following special permissions on the C: folder only: Traverse Folder /Execute File, List Folder/Read Data, Read Attributes, Read Extended Attributes, Read Permissions.  But this did not fix the problem either.  

What am I missing? Any other ideas?  Thanks!
</P>

 

by: DaveBaldwinPosted on 2009-08-03 at 11:42:10ID: 25007180

Microsoft articles suggest that a time difference between computers can cause login problems.  Also something about the domain account belonging to too many groups? http://support.microsoft.com/kb/842715 talks about problems with administrative shares. http://support.microsoft.com/kb/887303 talks about Group Policy problems that can give your error messages.

 

by: SDOITPosted on 2009-08-04 at 10:14:57ID: 25015942

Our domain controller synchronizes with a world time clock so I do not believe the issue is caused by a time difference. Interesting point about the domain account group membership, but I never get the opportunity in this case to provide a login because it cannot find the network path. Thanks for sending the link to KB article 887303.  It covers a few things I haven't looked at yet.  I will go through it in detail and report back if I have any success.

Here is one more piece to the puzzle that I forgot about. The hard drive on the problem computer (a laptop) has a clean install of Windows XP that was installed when the drive was connected to another motherboard. The old motherboard had no network connectivity at all and Windows XP was reinstalled at the time to troubleshoot that problem.  I confirmed that the hardware was bad and our motherboard was replaced by the manufacturer.  Our desktop support person decided to rebuild the PC using the Win XP OS that was already installed.  Could this different motherboard be a factor?  Could there be some registry setting somewhere that needs to be changed?  Does anyone have any thoughts on that?

 

by: DaveBaldwinPosted on 2009-08-04 at 10:49:05ID: 25016260

The time difference would be between the domain controller and the remote computer.  They should be synchronized to the same source.  And not being able to login was the symptom of too many groups... although the article said more than 180 groups was the problem and you said you could login on the other computers in your domain.

I would take a close look at the admin shares because that is where you are having a problem.  Looks like RDP bypasses that.  And having RDP access shows that the network hardware is working.

And if you have some version of Symantec "Internet Security", make sure it is not blocking your access to that computer.  In the new version of Norton/Symantec, I had to go in and 'approve' all the computers that were in the network before they could connect.  I had to 'approve' both the individual computers and the network.

 

by: SDOITPosted on 2009-08-06 at 13:37:59ID: 25037813

I checked the system time on the problem PC. It has the same time as our domain controller. The PC and the domain controller are synchronized to the same source.

I ran C:\>net share to see if any of the administrative shares were missing on this system. Everything is there. None of the shares are missing. Here's the output:
Share name   Resource                        Remark
-------------------------------------------------------------------------------
ADMIN$       C:\WINDOWS                      Remote Admin
C$           C:\                             Default share
IPC$                                         Remote IPC

I looked at HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\LanmanServer\Parameters\ and HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Lanmanworkstation\Parameters\ to see if either the AutoShareServer key or the AutoShareWks key had a value of 0. Neither DWORD value was present. "If these values do not exist, you do not have to create them because the default behavior is to automatically create the administrative shares."

I figured out the problem when I disabled Symantec Endpoint Protection v. 11.0.4014. I was able to browse via UNC path with SEP disabled. I re-enabled it and tried to browse from my PC again via UNC path. The following SEP message was displayed on the PC I could not connect to: "Traffic has been blocked from this application: (ntoskrnl.exe)."  It is the Network Threat Protection portion of the program that is blocking browsing across the network.

The problem computer (laptop) has an unmanaged SEP installation that has to be individually configured. The other computers on our network have not had this problem because they all have centrally managed SEP installations. Now all I need to do is figure out how to allow traffic to get through with SEP Network Threat Protection enabled.  





 

by: SDOITPosted on 2009-08-06 at 13:56:35ID: 25037980

I created a new firewall rule in SEP that allows network traffic from the IP addresses within our network that require the ability to browse via UNC path for the purpose of either troubleshooting or running a backup.  The problem is solved. Thanks for your assistance!

 

by: ComputerGeekJsyPosted on 2009-08-06 at 14:17:24ID: 25038172

Hmm...  With you saying in your original post that Windows Firewall was switched off, I (and I think everyone else did as nobody mentioned firewall) presumed no firewall was installed on the PC with it being internal on the network.

It would have saved you, me and the rest of the contributors a lot of time if you had!

Well, I suppose it's a lesson learned - don't overlook the obvious!

Glad it's sorted.

 

by: DaveBaldwinPosted on 2009-08-06 at 14:19:24ID: 25038189

Glad to hear that you found the cause and solved the problem.  I may be having the same problem with the Norton version of the Symantec product.  Something is blocking access to new files on a computer that is running a different antivirus.

 

by: SDOITPosted on 2009-08-06 at 14:35:15ID: 25038315

The original comment stated that Windows firewall was turned off. I didn't say there was no firewall software running on the PC.  Windows firewall and Symantec Endpoint Protection are not compatible.

Good point about overlooking obvious solutions. The solution is always obvious in hindsight. I didn't suspect SEP right away because it is running on all of our other computers and I was not experiencing this issue on any of them.  SEP has three different components: AntiVirus and Antispyware Protection, Proactive Threat Protection, and Network Threat Protection. It was the Network Threat component that was causing the problem.  I created a firewall rule to allow certain traffic rather than completely disable the Network Threat Protection component.

I also have SEP installed on our servers, but only the AntiVirus and Antispyware protection component.

20120131-EE-VQP-002

3 Ways to Join

30-Day Free Trial

The Experts

98% positive feedback on 31,087 answers since March 2000. angeliii is a Microsoft Most Valuable Professional for his work with MS SQL Server & Develoment.

He has also proven his knowledge of Visual Basic Programming, PHP Scripting and Oracle Databases.

The Experts

97% positive feedback on 10,752 answers since July 2000. lrmoore has more than 18 years experience in the networking industry.

The six-time Mircosoft MVPs specialties include firewalls, virtual private networking, and network management.

Testimonials

"...and excellent source for support... Kind of like having your very own IT dept." Electriciansnet

Testimonials

"I was apprehensive at signing up at first. However... it has already made my life as an IT administrator much easier." JaCrews

Testimonials

"WOW! You guys have great, active, and knowledgeable people on here." moore50

Business Clients

Business Clients

In the Press

"If you’ve got a question... Experts Exchange can supply an answer.”

In the Press

"...an invaluable aid for both IT professionals and those who require tech support."

In the Press

"where IT professionals provide quick answers on just about any topic"

Business Account Plans

Loading Advertisement...