[Samba] Setting Win ACLs via Comp Managment, connection to Member Server warning

Rowland Penny rpenny at samba.org
Tue Feb 21 11:07:01 UTC 2017

On Tue, 21 Feb 2017 04:11:52 -0600
Lin Pro via samba <samba at lists.samba.org> wrote:

> Hi,
> SeDiskOperatorPrivilege on ADDC is granted to BUILTIN\Administrators
> and Domain Admins
> But the Member Server has that permission granted only to
> BUILTIN\Administrators.
> Why?
> Is this normal? Should the permissions be set on the member server
> instead, not on the ADDC? or whould they propagate across from ADDC to
> Member Server...?

Quite normal, just give Domain Admins the privilege on the domain member


More information about the samba mailing list