Re: "access denied" for members of Administrators, stand-alone server
- From: "Roger Abell [MVP]" <mvpNoSpam@xxxxxxx>
- Date: Fri, 22 Jun 2007 00:00:21 -0700
Users group often includes Authenticated Users (which means any user
or computer account that authenticated to gain a login type session) as
Al inidcated, and also often includes INTERACTIVE (which means
any account login session based on the local login user right).
So the account may have been indirectly a member of Administrators.
When you added a grant on the directory for Administrators Full Contol,
if the deny for Users was still in effect (you said you blocked inheritance)
then the explict grant added would have overridden the inherited deny
for Administrators members.
Roger
"Larry" <nobody@xxxxxxxx> wrote in message
news:137lu2cd1vtvt78@xxxxxxxxxxxxxxxxxxxxx
I got this working: 1) uncheck "Allow inheritable permissions from parent
to propagate to this object." under Advanced and choosing to remove all
permissions from that directory structure, 2) Add Full Control to
Administrators.
But I am still mystified as to why the first approach did not work...
Larry
.
- Follow-Ups:
- References:
- Prev by Date: Re: "access denied" for members of Administrators, stand-alone server
- Next by Date: Re: Local admins
- Previous by thread: Re: "access denied" for members of Administrators, stand-alone server
- Next by thread: Re: "access denied" for members of Administrators, stand-alone server
- Index(es):
Relevant Pages
|
|