Quantcast
Channel: All Network and Storage Protocols posts
Viewing all articles
Browse latest Browse all 2151

Snapvault across domains: CIFS acces denied on destination

$
0
0

Hello, I am trying to mount a snapvaulted volume and can't get acces: "Access is denied. The requested permissions are not granted by the ACE while opening existing file or directory."

 

The original filer "A" (SVM) is in Domain TEST and had permissions on the folder for groups of Domain TEST.

Destination filer "B" (SVM) is in Domain PROD (trusted by TEST) , I mounted the snapvaulted vol, created the share but cannot get to the files

 

Groups allowed permissions to the share in domain TEST include Foreign Security Principals (FSP) from domain PROD. They resolve to groups from PROD , my user is a member of one of these groups. I can access the original share in domain TEST while logged with the same user account

 

I manually added my username into the security settings of the source folder (TEST) and ran and update of the SnapVault. I hoped that now the filer "B" in PROD would be able to resolve the newly added SID to my username in the domain. Yet I still get the same error.

 

I am not sure if there is any configuration from which the filer would know that the NTFS ACLs must be solved by

  1. Getting the right groups from domain TEST
  2. Solving the members (FSP that points to PROD groups)
  3. Match the incoming user-name (mine) to the members of one of the groups in the PROD domain from the step above.

Is this even possible?


Viewing all articles
Browse latest Browse all 2151

Latest Images

Trending Articles



Latest Images