UAC Affects Local Account Access of Remote Shares
i came across odd manifestation of uac today. it's been long time since i've had set cifs shares using local accounts authentication, having had domain-joined computers, that's had set today for file sync involving servers from untrusted domains.
i created local accounts on remote windows 2003 server, remote windows 2008 r2 server, , windows 2008 r2 server logged on to, , added account administrators group on each machine. each account of course had same name , password. on each remote server created share on administrators had full control , users had read access.
i logged on local machine account created , access share on each remote server without being prompted credentials. write share on remote windows 2003 server, on remote windows 2008 r2 server allowed read access. logged on local machine domain account in administrators group on remote windows 2008 r2 server , able write share. once turned off uac on remote windows 2008 r2 server, i was able write share using local account.
has else come across this? i can't find any documentation it. why local account affected uac when accessing data on network, not domain account? access a file system remotely to around uac.
any answers great, watch out if need use local account file sharing model. see no way around other by disabling uac.
hi,
i sorry delay.
i have done more research, , found out behavior facing called uac remote restrictions.
“when user member of local administrators group on target remote computer establishes remote administrative connection using net use * \\remotecomputer\share$ command, example, not connect full administrator”, quoted kb below:
description of user account control , remote restrictions in windows vista
http://support.microsoft.com/kb/951016
you right disabling uac take away these restrictions.
more information you:
disabling user account control (uac) on windows server
http://support.microsoft.com/kb/2526083
i hope helps.
have nice day!
amy
Windows Server > Security
Comments
Post a Comment