Problems access to files in shared folders on Server 2016 in domain.

L

Libor_Z

Hi,

I have problem with access to files in shared folders on Server 2016.

Situation:
I have 2 virtual servers on VMware ESXi 6.5, both Windows Server 2016 Std. in czech language version. Server 1 acts as domain controller with DNS, DHCP, and Windows certification authority. Second server is member of domain and i use it as application server with Exchange 2016 std, company IS (based on SQL server 2017 express), one other application using shared folder to store its data ind .DAT files and shared folders.

Symptoms:
I have application depending on *.DAT files in shared folder. When I try to run this app, it fails with and its error log appears message like can not acces file path\file.dat because it is read only. Every time it is different file and every time when I check NTFS permission on ti, it is full control for everyone and the same on network share (recommanded settings from app producer). Every time I run app it fails on different file.
Second symptom si, when user id working with files in shared folders (differnet than use app), time to time gets message "You need permission to perform this action. If you want to change this file, please contact DOMAIN \ user to be assigned the appropriate permissions." (we are using czech language OS, so this si google translation of the message). It happens on diferent files and every time I check NTFS permissions on file or folder or network share, it is correct (Domain Users full control).
Company IS app based os SQL works fine all the time, even its EXE file runs from network share on application server.

Background:
I had 2 old virtual servers on different old hardware. It was Small business server 2008 Premium, it means SBS server with domain controller role, DHCP, DNS and Exchange 2008 and Windows server 2008 witch I used for applications. This solution worked for years, but upgrade become necessary.
First I installed new Server 2016 std on new hardware and new VMware, connected to old SBS domain, configured as application and file server and moved both apps form old Server 2008 and network shares from SBS2008 to it. It worked fine.
Then I decided do not migrate old active directory and Exchange from SBS to new server, but build completly new enviroment. I have installed second Server 2016 std to second virtual machine, promote it to domain controller of the new domain (different name than old SBS one) in the new forest and moved Server 2016 with apps and shares from SBS domain to new one. Then I installed Exchange 2016 on application server and created users accounts in new domain. Then I moved all computers (Windows 7 and 10) from SBS domain to new Server 2016 domain and imported user mailboxes to new Exchange.
Now old servers (SBS and 2008) ale offline, all services works in new 2016 enviroment. Users can log in computers, Exchnage works, everyone can see network shares, but when try to work with files in shared folders or run app using it, I have problem described above.

Troubleshoting tryed:
Check NTFS and network share permission - both Everyone full control, all user accounts in new domain.
Disable inheritense and let OS set permissions for all files -seemed helped for second, but same situation again
Move apps share to second server (domain controller) and set permission completelly again - same situation
Check DNS - All computers has right DNS server (my new domain controller), nslookup resolves correctly

Some ideas?

Thanks!

Continue reading...
 
Back
Top Bottom