Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

Solve the problem that non-administrator login clients do not need to input user names and passwords to access network shares

2025-02-23 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Servers >

Share

Shulou(Shulou.com)06/02 Report--

Problem description:

On the client computer, log in to the system with a non-administrator local user, access the file server share without a pop-up window for typing the user name and password, but go directly to the share enumeration without any access. If you log in to the system with an administrator local user on the client computer, everything is fine, and the user name and password input window pops up with normal permissions.

At the same time, the "Network access: sharing and Security Model of Local accounts" in the Local Group Policy on the file server is set to "Classic-authenticate local users without changing their original identity"

The cause of the problem:

Both the client computer and the file server have local administrtor accounts by default, and the account matches the same when accessing the share, but the password is inconsistent, so you need to re-enter the user name and password for verification; when the client computer logs in to the system with a non-administrator account, it does not match the local account on the file server when accessing the share, so you do not have any permissions. To sum up, there are three situations:

1. Account matching, password matching, direct access to the shared list, permissions cannot be determined; (if the local account is added to the folder security tab, there are corresponding permissions)

two。 Account match, password mismatch, pop-up user name and password dialogue window; (enter the authorized user name and password for normal access. The user can be a local account of the file server or a domain user account. The format is different when entering)

3. Accounts do not match. Guest account is used by default to access the shared list without any permission.

Solution: (all set in the local group policy of the file server)

1. Under Settings-> Security options

Account: rename the guest account to another name, such as guestadmin

Account: guest account status changed to disabled

two。 Settings-user Rights assignment

Deny access to this computer from the network: add the local guestadmin account of the file server

Note:

In the above settings, be sure to rename the guest account, otherwise the following problems will occur:

1. Some clients, such as XP systems, have a "request login type not granted to the user on this computer" error

two。 When guest is added to deny access to this computer from the network, the guest user guest cannot be disabled and is automatically enabled.

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 0

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Servers

Wechat

© 2024 shulou.com SLNews company. All rights reserved.

12
Report