NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
sakmanga
Jun 16, 2017Aspirant
ReadyNAS 2120 OS6 - AD group "Domain users" automatically has full control granted on subfolders
Hi all, I have a ReadyNas 2120 v2 OS 6.7.4 working in an active directory. I created shared folders following the instruction in: https://kb.netgear.com/7066/ReadyNAS-OS-6-Setting-Active-Directory-...
JennC
Jun 19, 2017NETGEAR Employee Retired
Hello sakmanga,
You need to set permission on the subfolders too. The permission on the shares and subfolders are handled by the AD when the NAS is joined to the AD.
Welcome to the community!
Regards,
sakmanga
Jun 20, 2017Aspirant
Hi JennC, thank you very much for your replay.
Probably I didn't explained correctly the case.
Let’s try with an example:
Imagine this tree structure:
MainFolder
|_ SubFolder
I create the root folder (MainFolder) and configured:
From NetGear Admin page:
Network Access:
SMB only, Allow Anonymous access = False
File Access (as default):
Folder Owner=Administrator
Folder group = Domain Admins
Everyone = RO
Folder Owner, Folder Group, Domain Admins = R/W
From Windows Client (as described on doc https://kb.netgear.com/7066/ReadyNAS-OS-6-Setting-Active-Directory-folder-permissions):
Removed Read premission to "Everyone" group.
At this point "Domain Users" have no access at all to the folder.
Now lets create the subfolder SubFolder.
I expected the inheritance was respected but the goup "Domain Users" is automatically addeed to SubFolder with full control on it.
So if I give, for example, read only access to MainFolder to a user or a group of users they automatically will have full access to SubFolder.
I think this is a bug on this version of OS because I didn't have this problem in previous versions.
Have a nice day.
Related Content
NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!