User having required permissions not able to access cifs path when there is existing cifs session with old credentials
Applies to
- ONTAP 9
- CIFS
Issue
- User with all required permissions not able to access the cifs path and getting "
permission denied" or "access is denied" error. - User has read/write permissions on the cifs path and windows user is mapping to unix root:
cluster1::> vserver security file-directory show-effective-permissions -vserver vs1 -win-user-name domain1\user1 -path /volume/pathVserver: vs1Windows User Name: domain1\user1Unix User Name: rootFile Path: /volume/pathCIFS Share Path: -Effective Permissions:Effective File or Directory Permission: 0x1f01ffReadWriteRead AttributesWrite Attributes- Sectrace shows user does not have read permissions and its mapping to unix pcuser:
cluster1::*> sectrace trace-result showVserver: vs1Node Index Filter Details Reason--------------- ----- -------------------------- ------------------------------node1 Security Style: NTFS and Access is denied. TheNT ACL requested permissions are notgranted by the ACE whileopening existing file ordirectory. Access is notgranted for: "ReadAttributes", "Read"Protocol: cifsVolume: -Share: share1Path: /volume/pathWin-User: domain1\user1UNIX-User: pcuserSession-ID: 1013872866111782917