Solved

Access Denied when attempting to connect to share via UNC path

Posted on 2009-04-07
2
566 Views
Last Modified: 2013-12-23
I have a share on a Windows 2003 ( server1 ) named sqlback.

The everyone one group has full control over this share.
Administrators, system, sa_SQL2k5 and the group dbrefresh all have full control to the sqlback folder and all sub folders and files.

The user test is a member of the dbrefresh group. Using the effective permissions tab on the 2003 box I can see that the user test has full control over the sqlback folder and all the files in it.

This is the only access that test has to server1.

However, if test tries to access the share using a UNC path, the message "Access is Denied" is displayed.

Looking at the security event log on server1, I can only see sucessfully logins, there are no failure audits that corespond to the access denied (there is also nothing on the workstation I am using to connect to the share).

Additionally, if you look at the Shared Folders snap-in and the Sessions node, I can see that the test user is connected to server1.

Even more interstingly, I can sucessfully map a drive to the share from the command prompt using net use. However, if I then dir the drive, the dir comes back with "File not found".

And now moving into the realm of bizare, I can actually write to share via the mapped drive from the command line.

For example if I do mkdir test the test folder will appear under the share(spotted using explorer on server1), however doing a dir from mapped drive still shows "File Not Found".

Also if I try and browse the mapped drive from explorer I will also get access denied.

I have tried adding the test users directly to the Administrators group on server1, however the problem still persists, so I am thinking there is issues at the share or network work communication level.

I am hoping some of the experts here have any ideas.

We have restricteive GPo which sets all the user rights assignment values, so I am guessing it is something with this that is causing the problem. I will list out all the settings if it is helpful, but I am hoping someone has experienced this before and can narrow it down a bit first!
0
Comment
Question by:d_illicit
2 Comments
 
LVL 37

Expert Comment

by:bbao
ID: 24190642
it seems that the SHARE level permission has been granted but not the corresponding NTFS permissions. please double check the NTFS permissions of the folder and sub-folders...

hope it helps,
bbao
0
 
LVL 1

Accepted Solution

by:
d_illicit earned 0 total points
ID: 24292545
No it wasn't share level permissions, it was the GPO setting Bypass traverse settings.
The function group needed to be added to this setting to allow proper access to the share.
0

Featured Post

Gigs: Get Your Project Delivered by an Expert

Select from freelancers specializing in everything from database administration to programming, who have proven themselves as experts in their field. Hire the best, collaborate easily, pay securely and get projects done right.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Resolve DNS query failed errors for Exchange
An article on effective troubleshooting
Along with being a a promotional video for my three-day Annielytics Dashboard Seminor, this Micro Tutorial is an intro to Google Analytics API data.
Windows 10 is mostly good. However the one thing that annoys me is how many clicks you have to do to dial a VPN connection. You have to go to settings from the start menu, (2 clicks), Network and Internet (1 click), Click VPN (another click) then fi…

785 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question