<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic CIFS Authentication and Permissions Breakdown in Network and Storage Protocols</title>
    <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/CIFS-Authentication-and-Permissions-Breakdown/m-p/109061#M7937</link>
    <description>&lt;P&gt;Needs some help uderstanding how the authentication and permission configuration works with a Vserver...I'm a bit confused. So, I have 1 data vserver that allows all protocols (NFS, CIFS, ISCSI, FC) the root vol permission is set to UNIX. I went through the Vserver CIFS setup and added the SVM machine account into my Active Directory domain. I also configured WIN-to-UNIX name mapping --it maps to the AD domain "administrator" account to the "root" account. My confusion comes regarding do I still need to setup LDAP? How does authentication actually happen?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Much appreciated!!&lt;/P&gt;</description>
    <pubDate>Wed, 04 Jun 2025 23:27:12 GMT</pubDate>
    <dc:creator>morjo619</dc:creator>
    <dc:date>2025-06-04T23:27:12Z</dc:date>
    <item>
      <title>CIFS Authentication and Permissions Breakdown</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/CIFS-Authentication-and-Permissions-Breakdown/m-p/109061#M7937</link>
      <description>&lt;P&gt;Needs some help uderstanding how the authentication and permission configuration works with a Vserver...I'm a bit confused. So, I have 1 data vserver that allows all protocols (NFS, CIFS, ISCSI, FC) the root vol permission is set to UNIX. I went through the Vserver CIFS setup and added the SVM machine account into my Active Directory domain. I also configured WIN-to-UNIX name mapping --it maps to the AD domain "administrator" account to the "root" account. My confusion comes regarding do I still need to setup LDAP? How does authentication actually happen?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Much appreciated!!&lt;/P&gt;</description>
      <pubDate>Wed, 04 Jun 2025 23:27:12 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/CIFS-Authentication-and-Permissions-Breakdown/m-p/109061#M7937</guid>
      <dc:creator>morjo619</dc:creator>
      <dc:date>2025-06-04T23:27:12Z</dc:date>
    </item>
    <item>
      <title>Re: CIFS Authentication and Permissions Breakdown</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/CIFS-Authentication-and-Permissions-Breakdown/m-p/109230#M7941</link>
      <description>&lt;P&gt;If you have any volumes with UNIX security style, then usermapping needs to be configured.&amp;nbsp;Also you need to do "vsever cifs create" (do not confuse it with "vserver active-directory create" which is something different!) to create a machine account in AD (it's not enough to just manually add a machine account into your AD domain). You can check the secd.log (you can get it via http://&amp;lt;netapp node IP&amp;gt;/spi ) for any errors regarding usermapping and/or security.&lt;/P&gt;&lt;P&gt;Of course if you have users in LDAP/NIS that you want to map to (instead of, say, just mapping all windows user to one specific UNIX user) then you need to setup LDAP/NIS as name service&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But honestly, your partner (the one who sold you the NetApp) should be able to help you with that. Also, it's not often a good idea to use a single SVM for file and block storage at the same time. It's better to separate these into multiple SVMs&lt;/P&gt;</description>
      <pubDate>Mon, 31 Aug 2015 12:43:22 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/CIFS-Authentication-and-Permissions-Breakdown/m-p/109230#M7941</guid>
      <dc:creator>Darkstar</dc:creator>
      <dc:date>2015-08-31T12:43:22Z</dc:date>
    </item>
  </channel>
</rss>

