eexodus
Dabbler
- Joined
 - Aug 31, 2016
 
- Messages
 - 39
 
FreeNAS 11.1-U6 and Windows Server 2016
user1: a user who owns the file share
file-admins: a group my domain admin account is a member of
share-group: a group who uses the file share
user2: a member of share-group who needs their own private folder
I have a SMB share setup like:
"\\10.0.2.1\share" (root) owned by user1; permissions:
"\\10.0.2.1\share\shared" owned by user1:
"\\10.0.2.1\share\shared\test.txt" owned by creator user2
"\\10.0.2.1\share\user2" owned by user1:
"\\10.0.2.1\share\user2\test.txt" user2 owner
	
		
			
		
		
	
			
			user1: a user who owns the file share
file-admins: a group my domain admin account is a member of
share-group: a group who uses the file share
user2: a member of share-group who needs their own private folder
I have a SMB share setup like:
"\\10.0.2.1\share" (root) owned by user1; permissions:
- user1 full
 - share-group modify
 - file-admins full
 
"\\10.0.2.1\share\shared" owned by user1:
- user1 full (inherited from \\10.0.2.1\share)
 - admin-group full (inherited from \\10.0.2.1\share)
 - share-group modify (inherited from \\10.0.2.1\share)
 
"\\10.0.2.1\share\shared\test.txt" owned by creator user2
- user2 modify (inherited from Parent Object)
 - file-admins full (inherited from Parent Object)
 - share-group modify (inherited from Parent Object)
 - user1 goes missing!! even though the Parent Object ("shared") has user1 as full permissions and "shared" is set to inherit
 
"\\10.0.2.1\share\user2" owned by user1:
- user1 full (NOT inherited; inheritance turned off then user1 re-added)
 - user2 modify (NOT inherited; inheritance turned off then user2 re-added)
 - file-admins full (NOT inherited; inheritance turned off then file-admins re-added)
 
"\\10.0.2.1\share\user2\test.txt" user2 owner
- user2 full (inherited from Parent Object) (I can't get CREATOR OWNER to work either preferably the user2 would just have modify even though they are the test.txt file creator)
 - file-admins full (inherited from \\10.0.2.1\share\user2)
 - user1 is again missing despite being a full permissions user in the parent object!