I want to remove all unnecessary file shares, including the default administrator shares if they are not required. Where you could specify a specific user or group. I reset the permissions, and it was an empty folder. It's owned by a domain administrator.

If you want more granularity, I'm not sure if the Homegroup option can cover it. I think my next bet is to completely disable UAC as I cannot really see the point of it when my file server is already so hardened.

To isolate the inherited issue, please go to "d:\fileserver" Advanced Security Setting and ensure the ACLs of the folder are applied to "This folder only".

Certain aspects of these permissions are taking affect. Administrator File Modification Privilege - I'm going to read this now, but is disabling UAC really a good idea?

Domain Admin - You Don't Currently Have Permission To Access This Folder. I've made a new security group which the "Domain Admin" group is a member, and given that group "full control" of the shares. Two local users on w81: [UserA] and [UserB] with the same PasswordA and PasswordB as the corresponding users of w12.

It also works fine from another PC or server with \\servername\share$. All the shares have their own security group, where we delegate which users who should have access. Its me and the other admins that are having issues accessing the folders (shares) locally on the fileserver.

I am not able to edit security settings of a share by right clicking on the folder -> properties -> security, because I don't have access. Full Control allows you to read, write, modify, execute, change attributes, permissions, and take ownership of the file.

So if I do this and several other admins in the company do this every time they browse to one of these folders, soon looking at the security permissions of any folder will be a mess. Even though this seems odd, the domain user account still can't view or access the directory contents which is sufficient............unless they know how to right click and give themselves permission to access.

Now I have random issues with NTFS permissions Windows 7 Security Settings/Permissions Issues? The New Share Permissions Windows 7 brought along a new "easy" share technique. Logon as the domain admin account and run the following command to display the ACLs of the problematic folder and send the "acls.txt" file to me: - Click Start ->

Two local users on w12: [UserA] with PasswordA and [UserB] with PasswordB. You Do Not Have Permission To View Or Edit This Object's Permission Settings Server 2008 I should have permission to access this folder. If I redo permissions, then the files I had problems with work, but again, new files do not.

However, that's a workaround and not a fix.

This is the default settings: And this is what the settings on the GPO were: Since GPO takes precedence to local security, this is what was stopping me from seeing the folder. The notation that you will see takes a certain syntax, below are the different parts of a SID in this notation. http://clintboessen.blogspot.com/2013/05/you-dont-currently-have-permission-to.html Wanted to post it here for anyone else who is searching for this. The settings in this link worked after a reboot. Computer Configuration --> Windows Settings --> Security Settings -->

I have tried to change owner. It doesn't apply when a user creates a folder. The server has no GPO's applied.

feck no. How to say "Ok, then I take X" after your first choice is not available How to address friction between estimation requests and delivery commitment Storing passwords in access-restricted Google spreadsheets? Top Best Answer 0 Mark this reply as the best answer?(Choose carefully, this can't be changed) Yes | No Saving... Thanks for the suggestion.

This kind of makes sense due to Access-based enumeration being enabled, but following that theory if I'm not on the ACL list for folder abc it shouldn't even be visible to me. We have a weird issue on our fileserver.

Actually, I did ask via email, but it hasn't gotten to the list yet (that's another problem)… So, this sounds like some weird corruption of the ACLs in that folder.

Obviously I can only test via UNC/share path. When viewing the effective permissions locally on ServerA, it tells a different story, in that userA only has read-only permissions. To isolate the root cause of this issue, Please also collect the problematic folder permission and user group information for further research. Full Control allows you to read, write, modify, and execute files in the folder, change attributes, permissions, and take ownership of the folder or files within.

For information: I am also member of the "Domain Admin" group, and all the users that are member of "Domain Admin" is having this issue. Read & Execute will allow you to display the folder's contents and display the data, attributes, owner, and permissions for files within the folder, and run files within the folder.