Windows Sharing Issues Solve

  

The network provides us with a wealth of shared resources, but when accessing these resources, there will often be a "Deny Access" or "Lack of Permissions" error message, especially in Windows. In the workgroup environment, it is difficult to effectively manage the client's user account and access rights. In addition, different versions of the Windows operating system coexist in the network, and the network firewall is improperly configured, which is the main reason for the above problems. The following is a question for you to solve the problem of mutual access to shared resources.

First, the crux maintenance forum

1. Improper access settings are not supported by the motherboard.

Windows NT/2000/XP/2003 supports NTFS file system. NTFS can effectively enhance the security of the system, but set the user access rights in the ACL (Access Control List). If it is not, it will cause the user to not access the shared resources of the machine normally, and the message “Insufficient permissions” will appear. Hard disk repair training

2. Improper account and policy settings

In a Windows workgroup environment, users typically use a Guest account to access shared resources. However, for the security of the system, the Guest account of the system is disabled. In addition, in Windows 2000/XP/2003, the group policy defaults to not allowing the Guest account to access this computer from the network, which causes other users to access the Internet. The shared resource of the machine appears with the message “Deny access”.

3. Improper setting of network firewall

In order to enhance the security of the machine and prevent illegal intrusion, the user installed a network firewall. However, improper setting of the network firewall also causes other users to access the shared resources of the machine, and the message “Access denied” appears because the firewall closes the NetBIOS port required for sharing resources.

Second, the solution

After understanding the main reasons why shared resources cannot be successfully exchanged, we can solve the problem in the interview.

1. Enabling the Guest Account

In many cases, for the security of the native system, the Guest account is disabled, so that the shared resources of the machine cannot be accessed, so the Guest account must be enabled.

The author introduces Windows XP system as an example. On the shared resource provider, go to the "Control Panel & Rarr; Management Tools", run the "Computer Management" tool, and then expand "Computer Management (Local) & Rarr; System Tools & Rarr; Local Users and Groups & Rarr ;User”, find the Guest account. If a red cross is displayed in the Guest account, indicating that the account has been deactivated, right click on the account, in the Guest Properties dialog box, remove the checkmark of “ Account has been deactivated, click “ After ”, the Guest account is enabled. This method is suitable for Windows 2000/XP/2003 systems.

Tip: There is a big security risk when using the Guest account to access shared resources. Of course, we can also create a specific account for each access user. First create a new account on the shared resource provider and then specify the access rights for that account. Next, create an account with the same username and password in the client that wants to access the shared resource. After logging in to the client with this account, you can normally access the shared resources allowed by the account. This method is more secure, but you need to create an account for each user on the network, which is not suitable for larger networks.

2. Modify User Access Policy

Although the local guest account is enabled, the user cannot access the shared resources provided by the machine. This is because the group policy does not allow the guest account to access the machine from the network by default.

Click “Start →Run”, enter “gpedit.msc” in the Run box, expand in the Group Policy window, click “Local Computer Policy → Computer Configuration & Rarr; Windows Settings & Rarr ; security settings → local policy & rarr; user rights assignment & rdquo; (Figure 1), found in the right column "reject access to this computer from the network", open the delete Guest account, then open "ld from Network access this computer & rdquo; item, add the Guest account in the properties window. In this way, you can use the Guest account to access the shared resources of the machine from the network. This method is suitable for Windows 2000/XP/2003 systems.

FIG. 1

3. Properly configuring the network firewall

Many machines have a network firewall installed. If it is not properly set up, it also prevents users from accessing the shared resources of the machine. In this case, you need to open the NetBIOS port required for the shared resources of the machine. The author takes the Skynet firewall as an example. In the “Custom IP Rules” window, select “Allow the LAN machine to use my shared resources” rule, and finally click the “Save” button to open the NetBIOS port. .

4. Reasonable setting of user access rights

Many machines in the network use the NTFS file system. Its ACL function (access control list) can control the access rights of users. Users must access the shared resources of these machines. Permissions are fine. If you use the Guest account to access the CPCW shared folder of the machine, right click on the shared directory, select “Properties>, switch to the “Security” tab, then add the Guest account to the user list, then specify the Guest. Access rights, at least to "look" & rdquo; and “ list folder directory & rdquo; permissions (Figure 2). If you want to allow multiple user accounts to access the shared directory, just add the Everyone account, and then grant “read” and “list the folder directory” permissions, so avoid adding and specifying each one by one The user accesses the account. This method is suitable for Windows 2000/XP/2003 systems that use the NTFS file system.

Figure 2

Copyright © Windows knowledge All Rights Reserved