<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Workgroup authentication without prompt in Network and Storage Protocols</title>
    <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Workgroup-authentication-without-prompt/m-p/74869#M6776</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;on of our users has a vfiler with a Workgroup setup. And a windows server in the same workgroup.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Our user wants to access shares without getting a prompt but still have some security.&lt;/P&gt;&lt;P&gt;Also it wants to do this with a system account: "&lt;SPAN lang="EN" style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"&gt;DefaultAppPool &lt;/SPAN&gt;" (IIS)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is it sufficient for us to create local user "DefaultAppPool" and set share permissions to "&lt;SPAN lang="EN" style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"&gt;DefaultAppPool" "Full Control"?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="EN" style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"&gt;Or how can we fix this?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="EN" style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="EN" style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"&gt;P Rin&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 05 Jun 2025 05:54:23 GMT</pubDate>
    <dc:creator>PJRINZEMA</dc:creator>
    <dc:date>2025-06-05T05:54:23Z</dc:date>
    <item>
      <title>Workgroup authentication without prompt</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Workgroup-authentication-without-prompt/m-p/74869#M6776</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;on of our users has a vfiler with a Workgroup setup. And a windows server in the same workgroup.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Our user wants to access shares without getting a prompt but still have some security.&lt;/P&gt;&lt;P&gt;Also it wants to do this with a system account: "&lt;SPAN lang="EN" style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"&gt;DefaultAppPool &lt;/SPAN&gt;" (IIS)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is it sufficient for us to create local user "DefaultAppPool" and set share permissions to "&lt;SPAN lang="EN" style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"&gt;DefaultAppPool" "Full Control"?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="EN" style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"&gt;Or how can we fix this?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="EN" style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="EN" style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"&gt;P Rin&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Jun 2025 05:54:23 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/Workgroup-authentication-without-prompt/m-p/74869#M6776</guid>
      <dc:creator>PJRINZEMA</dc:creator>
      <dc:date>2025-06-05T05:54:23Z</dc:date>
    </item>
    <item>
      <title>Re: Workgroup authentication without prompt</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Workgroup-authentication-without-prompt/m-p/74874#M6777</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Those machines are in same work-group, we still need to provide credentials because the credentials are not centralized. Workaround would be create same user:password on both controller and windows server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Windows 7 on wards, operating system has option to store the credentials so that wont be prompted for credentials in the subsequent access. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 27 Sep 2013 07:17:21 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/Workgroup-authentication-without-prompt/m-p/74874#M6777</guid>
      <dc:creator>kodavali</dc:creator>
      <dc:date>2013-09-27T07:17:21Z</dc:date>
    </item>
    <item>
      <title>Re: Workgroup authentication without prompt</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Workgroup-authentication-without-prompt/m-p/74882#M6778</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Adding additional details should this still be an issue or if others come across.&amp;nbsp; The answer to this is indeed a local user on the controller / vfiler.&amp;nbsp; Then you will need to set the password of the local user to be the exact same as the password of the account on the Windows server.&amp;nbsp; The following happens when you attempt to access a share via CIFS:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Client: Clicks on start --&amp;gt; run and types: \\nascontroller\datashare &amp;lt;ENTER&amp;gt; - Once you hit enter, the user will first need to be Authenticated.&amp;nbsp; Windows will attempt authentication by submitting credentials in the back ground to "nascontroller".&amp;nbsp; Those credentials will be that of the currently logged in user.&amp;nbsp; So say for example the local user logged in is bobbyj and a local account also exists on nascontroller.&amp;nbsp; Windows will submit credentials tied to bobbyj's local account on the client attempting access to the share. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When those credentials are received by nascontroller, it will compare them against the local account it has in it's account database called bobbyj.&amp;nbsp; The passwords will not match and thus the client will be denied access.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The way around this is to setup what is called Passthrough.&amp;nbsp; All that you need to do is create a local user on the controller that matches the user that will be accessing the share and set their passwords to be exactly the same thing.&amp;nbsp; This KB discusses this - &lt;A href="https://kb.netapp.com/support/index?page=content&amp;amp;id=1011622&amp;amp;locale=en_US" title="https://kb.netapp.com/support/index?page=content&amp;amp;id=1011622&amp;amp;locale=en_US" target="_blank"&gt;https://kb.netapp.com/support/index?page=content&amp;amp;id=1011622&amp;amp;locale=en_US&lt;/A&gt; .&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 10 Dec 2013 19:24:28 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/Workgroup-authentication-without-prompt/m-p/74882#M6778</guid>
      <dc:creator>waldrop</dc:creator>
      <dc:date>2013-12-10T19:24:28Z</dc:date>
    </item>
  </channel>
</rss>

