<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic user mapping not working in General Discussion</title>
    <link>https://community.netapp.com/t5/General-Discussion/user-mapping-not-working/m-p/442310#M1473</link>
    <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;I am struggling with user mapping in combination with multiprotocol functionality.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;1. UNIX to Windows mapping: when I define a -default-win-user for the NFS server the mapping does not work. I configured LDAP on the vserver en ldap is enabled in the ns switch options.&lt;BR /&gt;Command: "diag secd name-mapping show -node %node% -vserver %vserver% -direction unix-win -name somelocallinuxname" effectively shows me the correct mapping as defined in the&lt;BR /&gt;-default-win-user parameter. However, when I want to mount the share on my Linux client I get an access denied. When I manually create a user mapping I can mount and access the share.&lt;BR /&gt;&lt;BR /&gt;2. Windows to UNIX mapping: I can't make it work. I have set a -default-unix-user in the cifs server settings (eg: root). The command "diag secd ..." returns the correct mapping&lt;BR /&gt;but when I try to write data to the share I just get a permission denied (except with a Windows user who is also a member of the administrators group of the vserver).&lt;BR /&gt;I also tried with a manually created user mapping (DOMAIN\\(.+) =&amp;gt; root) but to no avail.&lt;BR /&gt;&lt;BR /&gt;I have consulted the Netapp documentation but I can't find a solution. Does anybody have experience with these settings and provide me with an example how to make this work (preferrably with the default-user and ldap options?).&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;</description>
    <pubDate>Wed, 04 Jun 2025 09:52:07 GMT</pubDate>
    <dc:creator>digdev</dc:creator>
    <dc:date>2025-06-04T09:52:07Z</dc:date>
    <item>
      <title>user mapping not working</title>
      <link>https://community.netapp.com/t5/General-Discussion/user-mapping-not-working/m-p/442310#M1473</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;I am struggling with user mapping in combination with multiprotocol functionality.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;1. UNIX to Windows mapping: when I define a -default-win-user for the NFS server the mapping does not work. I configured LDAP on the vserver en ldap is enabled in the ns switch options.&lt;BR /&gt;Command: "diag secd name-mapping show -node %node% -vserver %vserver% -direction unix-win -name somelocallinuxname" effectively shows me the correct mapping as defined in the&lt;BR /&gt;-default-win-user parameter. However, when I want to mount the share on my Linux client I get an access denied. When I manually create a user mapping I can mount and access the share.&lt;BR /&gt;&lt;BR /&gt;2. Windows to UNIX mapping: I can't make it work. I have set a -default-unix-user in the cifs server settings (eg: root). The command "diag secd ..." returns the correct mapping&lt;BR /&gt;but when I try to write data to the share I just get a permission denied (except with a Windows user who is also a member of the administrators group of the vserver).&lt;BR /&gt;I also tried with a manually created user mapping (DOMAIN\\(.+) =&amp;gt; root) but to no avail.&lt;BR /&gt;&lt;BR /&gt;I have consulted the Netapp documentation but I can't find a solution. Does anybody have experience with these settings and provide me with an example how to make this work (preferrably with the default-user and ldap options?).&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;</description>
      <pubDate>Wed, 04 Jun 2025 09:52:07 GMT</pubDate>
      <guid>https://community.netapp.com/t5/General-Discussion/user-mapping-not-working/m-p/442310#M1473</guid>
      <dc:creator>digdev</dc:creator>
      <dc:date>2025-06-04T09:52:07Z</dc:date>
    </item>
    <item>
      <title>Re: user mapping not working</title>
      <link>https://community.netapp.com/t5/General-Discussion/user-mapping-not-working/m-p/442313#M1474</link>
      <description>&lt;P&gt;May be worth looking at this kb to ensure all is ok:&lt;BR /&gt;&lt;A href="https://kb.netapp.com/Advice_and_Troubleshooting/Data_Storage_Software/ONTAP_OS/How_does_LDAP_name-mapping_work%3F" target="_blank"&gt;https://kb.netapp.com/Advice_and_Troubleshooting/Data_Storage_Software/ONTAP_OS/How_does_LDAP_name-mapping_work%3F&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;TR-4835 (link below): When you use LDAP for name mapping, usually, it is a symmetric name mapping, but it is also possible to use asymmetric values.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could you enable this trace so that you could pickup any clues about the mount failure.&lt;BR /&gt;&lt;A href="https://kb.netapp.com/Advice_and_Troubleshooting/Data_Storage_Software/ONTAP_OS/How_to_troubleshoot_LDAP_issues_in_Windows_Active_Directory" target="_blank"&gt;https://kb.netapp.com/Advice_and_Troubleshooting/Data_Storage_Software/ONTAP_OS/How_to_troubleshoot_LDAP_issues_in_Windows_Active_Directory&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Related:&lt;BR /&gt;&lt;A href="https://kb.netapp.com/Advice_and_Troubleshooting/Data_Storage_Software/ONTAP_OS/Understanding_name-mapping_in_a_multiprotocol_environment" target="_blank"&gt;https://kb.netapp.com/Advice_and_Troubleshooting/Data_Storage_Software/ONTAP_OS/Understanding_name-mapping_in_a_multiprotocol_environment&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://kb.netapp.com/Advice_and_Troubleshooting/Data_Storage_Software/ONTAP_OS/Security_Daemon_(SecD)_fails_to_find_local_unix_user_by_UID_and_name" target="_blank"&gt;https://kb.netapp.com/Advice_and_Troubleshooting/Data_Storage_Software/ONTAP_OS/Security_Daemon_(SecD)_fails_to_find_local_unix_user_by_UID_and_name&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://kb.netapp.com/Advice_and_Troubleshooting/Data_Storage_Software/ONTAP_OS/Implicit_Windows_to_UNIX_name_mapping_fails_when_Windows_user_has_upper_case_characters" target="_blank"&gt;https://kb.netapp.com/Advice_and_Troubleshooting/Data_Storage_Software/ONTAP_OS/Implicit_Windows_to_UNIX_name_mapping_fails_when_Windows_user_has_upper_case_characters&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://www.netapp.com/media/19423-tr-4835.pdf" target="_blank"&gt;https://www.netapp.com/media/19423-tr-4835.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Mar 2023 13:31:13 GMT</pubDate>
      <guid>https://community.netapp.com/t5/General-Discussion/user-mapping-not-working/m-p/442313#M1474</guid>
      <dc:creator>Ontapforrum</dc:creator>
      <dc:date>2023-03-09T13:31:13Z</dc:date>
    </item>
  </channel>
</rss>

