Unable to access CIFS shares using gMSA account
Applies to
- ONTAP 9
- Microsoft gMSA account (group Managed Service Account)
Issue
- Unable to access CIFS shares using gMSA account
- access-check authentication show-creds shows "SecD Error: not user sid"
cluster::> set advanced
Warning: These advanced commands are potentially dangerous; use them only when directed to do so by NetApp personnel.
Do you want to continue? {y|n}: y
cluster::> vserver services access-check authentication show-creds -node node1 -vserver vs1 -win-name domain\gmsa_account
Vserver: vs1 (internal ID: 27)
Error: Get user credentials procedure failed
[ 0 ms] Using a cached connection to
dc1.domain.com
[ 1] DC translates S-1-5-21-1172865061-1541640452-3102224447-29
633 to 'domain\gmsa_account'
**[ 1] FAILURE: Cannot get credentials for 'domain\gmsa_account',
** SID 'S-1-5-21-1172865061-1541640452-3102224447-29633'.
** Not a user or machine account
Error: command failed: Failed to get user credentials. Reason: "SecD Error: not user sid".