Re: User bypasses security

From: Steven L Umbach (n9rou_at_nospam-comcast.net)
Date: 11/16/05


Date: Wed, 16 Nov 2005 11:40:37 -0600

Jim.

When he is connected to the share go to Computer Management/Shared Folders -
sessions to see as what user he is connected to the folder as and it should
also show the source computer. Type 3 logon events would also be generated
in the security log of the server for the user accessing the share if
auditing of logon events is enabled. If the user is different than what you
expect then he may be accessing the share with credentials other than his
own. Windows XP can use "stored credentials" [see link below]to access a
server or share though I have no idea how he would have access to your
credentials unless you logged on as that account one time and configured
stored credentials. Try having that user logon to another computer to see if
he still can gain access. Also double check the user's group membership to
make sure it is what you expect --- Steve

http://www.microsoft.com/resources/documentation/Windows/XP/all/reskit/en-us/Default.asp?url=/resources/documentation/Windows/XP/all/reskit/en-us/prdp_log_vkxx.asp

"Jim Matthews" <jmweb@comcast.net> wrote in message
news:OfeFP6s6FHA.1276@TK2MSFTNGP09.phx.gbl...
> Sorry - he can look at any share and open any file he wishes
>
> For example, I have a folder in which I keep confidential info. The only
> share and security permissions on it are me - as Domain Admin and as a
> user.
>
> He can simply go to Start-->Run and type \\servername and he is shown a
> list
> of all shares. If he clicks on my share, he is given access to it all
>
> I have no idea whether he can log on to the server console
>
> Thanks for your help
>
> JM
>
> "Steven L Umbach" <n9rou@nospam-comcast.net> wrote in message
> news:%23XokZ1s6FHA.3648@tk2msftngp13.phx.gbl...
>> Define more specifically what you mean by everything with some examples.
> Can
>> he logon to the domain controller console? Can he access it's security
> logs
>> via Event Viewer? --- Steve
>>
>>
>> "Jim Matthews" <jmweb@comcast.net> wrote in message
>> news:eJ6fdvs6FHA.3588@TK2MSFTNGP15.phx.gbl...
>> > My setup (partially) a W2K Server (DC) which houses AD, and files, and
>> > a
>> > W2K3 Server which houses Exchange and files.
>> >
>> > I set up a new user (without admin rights) and he has access to
>> > _everything_
>> > on the W2k Server, but is ''restricted" normally on the W2K3 server.
>> >
>> > He is not a member of any admin group or anything like that. I have
>> > checked
>> > and rechecked the permissions on several restricted folders.
>> >
>> > He is running XP Pro
>> >
>> > I assume that because he is restricted on the W2K3 server that his
>> > "permissions" are correct, but there is something amiss on the one
> server
>> >
>> > Can anyone shed some light on this ?
>> >
>> > Many Thanks
>> >
>> > JM
>> >
>> >
>>
>>
>
>



Relevant Pages

  • Re: Email enable doc lib
    ... navigate to the public folder and send some posts with attachments to the ... Microsoft CSS Online Newsgroup Support ... I have disabled forms base Athentication from the default V.Smtp server ...
    (microsoft.public.windows.server.sbs)
  • Re: Newbie with a smallbiz2000 installation, check my config?
    ... > Windows creates a profile path under Documents & Settings. ... > a folder with that name already exists (maybe a local user with the ... > server, open the properties for this folder, and ensure that you have ... > you redirect key folders from a user's profile to a location on your ...
    (microsoft.public.backoffice.smallbiz2000)
  • Re: Network shares cannot connect
    ... User Name: SERVER$ ... Regarding the shares accessing problem, I suggest you try following steps ... let's focus on the Users Shared Folder first. ... To check this permission, please click the Advanced button, select ...
    (microsoft.public.windows.server.sbs)
  • Re: Disappearing disk space?
    ... I switched off the AV scanning completely last night and the ... Windows Server 2003, Windows 2000, or Windows XP ... %systemroot%\Sysvol folder ... KB309422 - Guidelines for choosing antivirus software to run on the ...
    (microsoft.public.windows.server.sbs)
  • Re: SBS 2003 folder redirection, offline files, ..and more
    ... you log into a shared PC with admin rights and go to Windows Explorer Folder ... documents are redirected to the server. ... without redirection, they wouldn't have been. ...
    (microsoft.public.windows.server.sbs)