Access denied in applying SACLs using the Windows Security tab
Applies to
- ONTAP 9
- CIFS Auditing
Issue
- The following error is seen on the Windows client when adding entries to NTFS SACLs using the Windows Security tab.
An error occurred while applying security information to :Z:\\xxxx\share\xx\a.7z. Failed to enumerate objects in the container. Access is denied.

- Security trace shows access denied on the file
svm1 1 Security Style: NTFS and Access is denied as the
NT ACL volume is readonly or directory is a snapshot while setting attributes.
Protocol: cifs
Volume: -
Share: data
Path: /share/xxx/a.7z
Win-User: SVM1\ntap
UNIX-User: root
Session-ID: 609111849603191330
- File directory effective permission shows the user has enough permission on the file
::> vserver security file-directory show-effective-permissions -vserver svm1 -win-user-name SVM1\ntap -path /data/share/xxx/a.7z
Vserver: svm1
Windows User Name: SVM1\ntap
Unix User Name: root
File Path: /data/share/xxx/a.7z
CIFS Share Path: -
Effective Permissions:
Effective File or Directory Permission: 0x11f01ff
Read
Write
Append
Read EA
Write EA
Execute
Delete Child
Read Attributes
Write Attributes
Delete
Read Control
Write DAC
Write Owner
Synchronize
System Security