Incorrect permissions being set when IT Admin (Non Administrator) Creates user home folders.


hi all, hope can help....

i work organisation of <750 users, domain made of w2k3 machines, both virtual, , physical. heres problem....

it admin user creates new users , specifies thier home drive //server/user$/%username% , when does, gets full permission home drive new user. (this admin user not member of administrators or domain admins group, delegated create new users only)

i think problem related permissions set on home$ share, searching , applying different permissions doesnt seem fix problem. seem going round in circles bit!

so here's shares set to...

//server/user$ share permissions are....

- everyone, full control

ntfs permissions are....

- local machine\administrators, full control

- authenticated users, special (traverse folder / execute file, list folder / read data, read attributes, create folders / append data, read permissions)

- creater owner, special (full control)

- system, full control live system, dont want make drastic changes, can enlighten me whats going on?

regards phil....

i noticed createowner - full control no #home folder. assume "inheriting" enabled, new user have full control when created new home folder.

then mentioned admin has full control on folder, check if inherited. see ziad's steps.


shaon shan |technet subscriber support in forum |if have feedback on our support, please contact tngfb@microsoft.com


Windows Server  >  Directory Services



Comments

Popular posts from this blog

Edit Group Policy

Hyper-V VM not reaching OS 'Logon' screen

DNS question...