Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win

x
?
Solved

Administrative shares on Active Directory server keep disappearing

Posted on 2003-12-05
4
Medium Priority
?
754 Views
Last Modified: 2010-04-13
Hello you

Our Active Direcotory server has Panda Administrator (antivirus software console) installed and unless the C: drive is shared as C$ and \WINNT shared as Admin$ then Panda Administrator does not function properly. I have shared both as required but the shares are not permanent. I have not discovered what event causes both shares to disappear, it happens even without a reboot. I use Terminal Services to log in to the machine regularly and I have just checked that the shares did not disappear after logging out and in.

This is our only DC machine, we have Exchange running on a member server which does not have this problem.

A Panda support person pointed me in the direction of security policies but I do not know what to look for and whether to look in "Domain Controller Security Policy", "Domain Security Policy" or "Local Security Policy" which all appear in Administrative Tools. In "Domain Security Policy" I did find "Create permanent shared objects" and two groups are listed: Administrators and OURDOMAIN\Domain Admins. Is this the default? Should I need to change the default settings?

Thanks in advance for any suggestions, complete solutions

Simon
0
Comment
Question by:SharedLogic
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
4 Comments
 
LVL 11

Accepted Solution

by:
adonis1976 earned 1000 total points
ID: 9881920
interesting... so they just get kinda deleted then? I dont think personally it is a security policy setting, because you told that even if you reboot the machine the shares still stay on... and when a machine starts, the security policies surely gets applied. One thing however would be good to look at Domain security policy if it has anything to do with the admin shares setting.

the two groups you mentioned are default and you don't have to change those.

here is a link that tells how to restore missing admin shares..it might be useful to u:

http://support.microsoft.com/default.aspx?scid=kb;en-us;318755&Product=win2000
0
 

Author Comment

by:SharedLogic
ID: 9882064
I don't know that if shares stay on if I do reboot. They stay on if I log off an on again, and they do disappear without me rebooting, I just don't know when they disappear.

Interesting article though. With reference to it's instructions (shown below), the value in the registry key was set to zero on our Active Directory server. I am happy to change this to 1 if anyone else can confirm that they have the same setting by default. The article does not make it clear what the default setting should be, and I don't understand the context of "If the AutoShareServer key is set to 0, administrative shares (such as C$, D$, Admin$, and so on) cannot be created automatically". Automatically by what?

Our Exchange (domain member) server does not have the AutoShareServer key so I assume it applies only to domain controllers.

Here are the instructions from that article (and thanks for your help):

Start Registry Editor (Regedt32.exe).
Locate and click the following key in the registry:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanServer\Parameters\AutoShareServer

Either change the value of the AutoShareServer key to 1 or delete the value.

NOTE: If the AutoShareServer key is set to 0, administrative shares (such as C$, D$, Admin$, and so on) cannot be created automatically.
Quit Registry Editor.

0
 
LVL 11

Expert Comment

by:adonis1976
ID: 9882123
the default setting is "1". Look at this article:

http://www.pureperformance.com/js/showtip.asp?id=55

What i assume by"created automatically" is that if the value is "0", the shares are not created automatically.



0
 

Author Comment

by:SharedLogic
ID: 9920260
I'm not sure that created "automatically" should mean the same as "retain the administrative share created by an overworked network administrator", but a week has passed and the shares are still there after making your suggested change, so...

...well done, and thanks!
0

Featured Post

Important Lessons on Recovering from Petya

In their most recent webinar, Skyport Systems explores ways to isolate and protect critical databases to keep the core of your company safe from harm.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

NTFS file system has been developed by Microsoft that is widely used by Windows NT operating system and its advanced versions. It is the mostly used over FAT file system as it provides superior features like reliability, security, storage, efficienc…
One of the most important things in an application is the query performance. This article intends to give you good tips to improve the performance of your queries.
In this video, Percona Solutions Engineer Barrett Chambers discusses some of the basic syntax differences between MySQL and MongoDB. To learn more check out our webinar on MongoDB administration for MySQL DBA: https://www.percona.com/resources/we…
Is your data getting by on basic protection measures? In today’s climate of debilitating malware and ransomware—like WannaCry—that may not be enough. You need to establish more than basics, like a recovery plan that protects both data and endpoints.…
Suggested Courses

597 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question