Quantcast
Channel: File Services and Storage forum
Viewing all 13565 articles
Browse latest View live

Search Indexing on Fileserver shows files with no access permissions

$
0
0

Hi @all,

we have a strange issue with a file server running Windows server 2008 R2 with Index service installed and configured.

The Fileserver uses NTFS/Share permissions to restrict access to specific users and groups, ABE is enabled for the shares.

The Index services indexed the file server data and if a user now searches for example *.docx files, as a result all *.docx files will be displayed also if the user has NO permissions to see / access this file.

Does anyone have a idea why this happens? Is there a way to change the configuration so that the search results only displays results of files where the user has access?

thanks in advance


Don't trust Storage Spaces/Windows 2019 with your data

$
0
0

Before you guys even mention the volume size, i'm trying to create a 30GB parity volume in this picture just so we don't have even bother. This is Windows Server 2019 Datacenter, HP z420 Workstation, 3 WD Black Caviar 1TB SATA drives, it's an onboard SAS controller but it's SATA interface. 

And before anyone asks:

PS C:\Users\Administrator> Get-PhysicalDisk

DeviceId FriendlyName         SerialNumber    MediaType CanPool OperationalStatus HealthStatus Usage            Size
-------- ------------         ------------    --------- ------- ----------------- ------------ -----            ----
0        ATA Samsung SSD 860  S3Z2NB0K151747K SSD       False   OK                Healthy      Auto-Select 465.76 GB
2        ATA WDC WD1001FALS-4 WD-WMATR0074050 HDD       False   OK                Healthy      Auto-Select 931.51 GB
3        ATA WDC WD1001FALS-4 WD-WCATR3298445 HDD       False   OK                Healthy      Auto-Select 931.51 GB
4        ATA WDC WD1002FAEX-0 WD-WCAW32647816 HDD       False   OK                Healthy      Auto-Select 931.51 GB
1        ATA Samsung SSD 860  S3Z2NB1K350885W SSD       False   OK                Healthy      Auto-Select 465.76 GB
5        ATA WDC WD2001FASS-0 WD-WMAY00514310 HDD       True    OK                Healthy      Auto-Select   1.82 TB


PS C:\Users\Administrator>


Going nuts with this, it's so illogical the error doesn't make sense.


NFS share - Read only

$
0
0

Hello,

We installed a new Windows 2016 server on Hyper-V 2016.

On this server, we must create a shared folder, with SMB and NFS access (some machine tools need an anonymous NFS write access).

The "NFS server" role is installed, and the share is configured.

With SMB, there is no problem, but the NFS share can be accessed in read-only (but not write).

We configured :
- The security with Full Access for "Everybody" and "ANONYMOUS USER"
- The SMB share with Read/Write for "Everybody" and "ANONYMOUS USER"
- The NFS share with anonymous access (UID: -2 and GID: -2) with write autorisation and Root Access
- The TCP and UDP ports 111, 1039, 1047, 1048 and 2049 are open

But the NFSclients (Windows and Linux-based machine tools) have access in read-only...

When trying to write, the is the following error 0x8007045D: "The request could not be performed because of an I/O device error".

Do you have any idea to solve this issue and allow write access ?

Thanks in advance.


nfs

$
0
0

Hi Guys

i try to limit access on nfs windows 2012 R2,

i disable access the nfs ,from nfs folder -> properties -> security

, but another host linux still can mounting the nfs  , pls help 

Storage Spaces Direct hosts with Docker

$
0
0

Hello,

Any thoughts or concerns to run Docker on hosts that are part of Storage Spaces Direct?  I believe the hosts should be clean with only the OS.  Does Microsoft recommend not running anything else on hosts that are part of Storage Spaces Direct cluster?

Thx


Robert

How to stop Online Defragmentation of System Volume Information file? - Event ID 700 & 701 - ESENT

$
0
0

I'm seeing Event IDs 700 and 701 logged every hour on a Windows Server 2008 Standard SP2 box, here's a couple of event logs (they're all identical other than the time stamp):

Log Name:      Application
Source:        ESENT
Date:          29/05/2010 11:00:42 PM
Event ID:      700
Task Category: Online Defragmentation
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      WT-Server.wineandtruffle.com.au
Description:
DFSRs (1676) \\.\C:\System Volume Information\DFSR\database_F05C_88FF_5C88_C238\dfsr.db: Online defragmentation is beginning a full pass on database '\\.\C:\System Volume Information\DFSR\database_F05C_88FF_5C88_C238\dfsr.db'.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="ESENT" />
    <EventID Qualifiers="0">700</EventID>
    <Level>4</Level>
    <Task>10</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2010-05-29T15:00:42.000Z" />
    <EventRecordID>30571</EventRecordID>
    <Channel>Application</Channel>
    <Computer>WT-Server.wineandtruffle.com.au</Computer>
    <Security />
  </System>
  <EventData>
    <Data>DFSRs</Data>
    <Data>1676</Data>
    <Data>\\.\C:\System Volume Information\DFSR\database_F05C_88FF_5C88_C238\dfsr.db: </Data>
    <Data>\\.\C:\System Volume Information\DFSR\database_F05C_88FF_5C88_C238\dfsr.db</Data>
  </EventData>
</Event>

Log Name:      Application
Source:        ESENT
Date:          29/05/2010 11:00:42 PM
Event ID:      701
Task Category: Online Defragmentation
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      WT-Server.wineandtruffle.com.au
Description:
DFSRs (1676) \\.\C:\System Volume Information\DFSR\database_F05C_88FF_5C88_C238\dfsr.db: Online defragmentation has completed a full pass on database '\\.\C:\System Volume Information\DFSR\database_F05C_88FF_5C88_C238\dfsr.db'.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="ESENT" />
    <EventID Qualifiers="0">701</EventID>
    <Level>4</Level>
    <Task>10</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2010-05-29T15:00:42.000Z" />
    <EventRecordID>30572</EventRecordID>
    <Channel>Application</Channel>
    <Computer>WT-Server.wineandtruffle.com.au</Computer>
    <Security />
  </System>
  <EventData>
    <Data>DFSRs</Data>
    <Data>1676</Data>
    <Data>\\.\C:\System Volume Information\DFSR\database_F05C_88FF_5C88_C238\dfsr.db: </Data>
    <Data>\\.\C:\System Volume Information\DFSR\database_F05C_88FF_5C88_C238\dfsr.db</Data>
  </EventData>
</Event>

This server is NOT running Exchange - it's a PDC with AD and a file server. There are no other servers it is synchronising with - it's the only server in the domain.

Is there some way to turn off Online Defragmentation? Failing that, is it safe to simply stop the DFS Replication Service and delete the C:\System Volume Information\DFSR\database_F05C_88FF_5C88_C238 directory and then restart the service, or will it bring the server to a crashing halt? Or is there another way to get rid of this?

Thanks,

Trevor

Dynamic Disk - Healthy (At Risk) - unable to reactivate and extend disk

$
0
0

I have a VM with Windows Server 2012R2. I wanted to extend a dynamic disk but in Disk Management Disk 1 doesn't show the Online status it just says 'Errors'. Underneath the Volume it says "Healthy (At risk)". 

https://docs.microsoft.com/en-us/windows-server/storage/disk-management/troubleshooting-disk-management#a-dynamic-volumes-status-is-healthy-at-risk

This article describes to reactivate the disk by rightclicking it and choose reactivate but nothing happens. Same results with diskpart: list disk - select disk 1 - Select Partition 1 - Active

There's nothing in eventviewer about this action.

When I check the drive for errors I get  "Windows has scanned the file system and found no problems. No further action is required. "

I rebooted the machine, I tried setting this registry key to a higher value, because I suspected a wrong IO disk timeout

     HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\TimeOutValue   to 190

I'm at a loss rightnow. 

Search in folder shows results located in "Temporary Burn Folder" (SBS2011)

$
0
0
I came across this issue searching for a folder that a user had misplaced/deleted.

When I search from the server (SBS2011) inside a particular folder, the search results show the folder paths for the results as being located in a Temporary Burn Folder on the same drive instead of the actual folder path.

Example:
 I search for a folder called "TEST" in D:\Data\Docs\IT Docs\Temp
 The result shows the TEST folder as being located in D:\Data\Temporary Burn Folder\IT Docs\Temp

Other notes:
 - It appears to happen on any search inside a particular shared folder (D:\Data\Docs).
 - I'm not searching via the Share, but via the local folder on the server.
 - This doesn't occur in other Shared folders on the server - the search results correctly display as being located in the respective folder.
 - It doesn't matter if I logon to the server with another user account, this particular share still shows the same issue.
 - If I search the shared folder from another computer, the folders are correctly identified in the network share.

<See attached image>


Shared folder on azure AD DS joined server

$
0
0

Hi all,

I hope this is the correct forum section.

I have a questions about a Shared folder on server joined on azure AD DS, let's me explain:

we have an Azure AD Domain Services where the users and servers are registered in differents OU, instead the user's computer are joined in azure AD but not in the Azure AD Domain Services.

They logon with the e-mail address to the their computer.

The problem is: when users from their computers try to open a network share a new windows opens with credential request, after this they insert credential and it works fine until logout/reboot. After logout/reboot if they try open the network share doesn't works.

When i try to open the share in the event viewer of the server i see EventID 4624

An account was successfully logged on.
Subject:
 Security ID:  NULL SID
 Account Name:  -
 Account Domain:  -
 Logon ID:  0x0
Logon Information:
 Logon Type:  3
 Restricted Admin Mode: -
 Virtual Account:  No
 Elevated Token:  No
Impersonation Level:  Impersonation
New Logon:
 Security ID:  ANONYMOUS LOGON
 Account Name:  ANONYMOUS LOGON
 Account Domain:  NT AUTHORITY
 Logon ID:  0x1BEC195
 Linked Logon ID:  0x0
 Network Account Name: -
 Network Account Domain: -
 Logon GUID:  {00000000-0000-0000-0000-000000000000}
Process Information:
 Process ID:  0x0
 Process Name:  -

Network Information:
 Workstation Name: 
 Source Network Address: 
 Source Port:  49785 

If i not insert the credentials the EventID becomes 4634

An account was logged off.
Subject:
 Security ID:  ANONYMOUS LOGON
 Account Name:  ANONYMOUS LOGON
 Account Domain:  NT AUTHORITY
 Logon ID:  0x1C24986
Logon Type:   3

instead if i insert the credentials the EventID become are 4624 and 4672

4624

An account was successfully logged on.
Subject:
 Security ID:  NULL SID
 Account Name:  -
 Account Domain:  -
 Logon ID:  0x0
Logon Information:
 Logon Type:  3
 Restricted Admin Mode: -
 Virtual Account:  No
 Elevated Token:  Yes
Impersonation Level:  Impersonation
New Logon:
 Security ID:  
 Account Name:  
 Account Domain:  
 Logon ID:  0x1C2902E
 Linked Logon ID:  0x0
 Network Account Name: -
 Network Account Domain: -
 Logon GUID:  {0f33b9e5-9f17-0459-cad9-ab1a4f3e0678}
Process Information:
 Process ID:  0x0
 Process Name:  -
Network Information:
 Workstation Name: -
 Source Network Address: 
 Source Port:  49807
Detailed Authentication Information:
 Logon Process:  Kerberos
 Authentication Package: Kerberos
 Transited Services: -
 Package Name (NTLM only): -
 Key Length:  0
 Authentication Package: NTLM
 Transited Services: -
 Package Name (NTLM only): NTLM V1
 Key Length:  128

4672

Special privileges assigned to new logon.
Subject:
 Security ID:  SYSTEM
 Account Name:  
 Account Domain:  
 Logon ID:  0x1C17DF2
Privileges:  SeSecurityPrivilege
   SeBackupPrivilege
   SeRestorePrivilege
   SeTakeOwnershipPrivilege
   SeDebugPrivilege
   SeSystemEnvironmentPrivilege
   SeLoadDriverPrivilege
   SeImpersonatePrivilege
   SeDelegateSessionUserImpersonatePrivilege

Someone can explain how to resolve this issue?

 

Cannot save files to network drives anymore

$
0
0
A user I have got upgraded to the surface 6 and office changed to 2016 home and business version. Though now when they attempt to save a document to their mapped drives it pops up with the another user may have previously edited this file overwrite changes or save a copy and then gets error document not saved no matter what option you choose. It won't allow them to do anything with it but when saving to desktop and dragging it over it goes straight into there. I have no idea what is happening as all server and folder permissions are set up proper and even tried remapping with no success.

SMB witness client/server error

$
0
0

Hi, 

    I have been researching this SMB witness issue for quiet a while. hopefully someone here may shed some light or I guess I would have to open a case with Microsoft. Thank you in advance. 

*  error on SMB server (Witness Client Admin): Witness Client failed to unregister from witness Server xxxx for NetName zzzz with error  (The operation identifier is not valid) 

                                                                 Witness Client received error (The parameter is incorrect) from witness server xxx.xx.xx.xxx for Netname \\xxxxxxx

-----------------------------------------------------------------------------------------------------

* error on SMB client (SMBWitnessClient): Witness Client received error (The parameter is incorrect) from witness server xxx.xx.xx.xxx for NetName \\xxxxxxx

**********************************

What I have done so far: 

1. disabled SMB multi channel. We have 3 nics on each cluster node that only 1 nic is supposed to be used for smb traffic. I therefore tried to disable the smb multi path to see if it would fix this issue by not confusing SMB routing. 

2. I have done "adapters and bindings" setting the smb traffic nic to the top of the order

3. Increase the UDP package interval and threshold

Cluster /prop SameSubnetDelay=2000 
Cluster /prop SameSubnetThreshold=10
Cluster /prop CrossSubnetDelay=4000 
Cluster /prop CrossSubnetThreshold=10

So far I'm still getting the non stop smb errors. I would really appreciate it if anyone has a solution to this smb issue. 

thank you


Can't take ownership of files with take own get access diened

$
0
0

Good afternoon all,

I've some files where can't take the ownership of. I've tried every and searched allot of technet and the rest of google.

When is ue:

Takeown /f *.* /r /a /d y

i get like 4 succes messages and 16 INFO: Access is denied.

I need to copy/cut the files to new storage, can someone help me please??

I am a member of the adminsitrator group

Win2k8 Server Disk Defragmenter

$
0
0
The versions of Disk Defragmenter in Win2k3, Win2k and WinXP provide a report indicating what files are defragmented and the extent of that fragmentation.  The version in Vista and Win2k8 do not appear to have this anymore.  Is this something that was taken out, or is there some setting I am missing?  Quite honestly, I would really like to know what I am getting myself in for, if I need to run this on a database server.

TIA,

Greg Wilkerson

NTFS permission removed when deleting a subfolder

$
0
0

Hello everyone,

I do have a very strange issue with my file server. Let me first describe the infrastructure.

OS: Windows Server 2016
Roles: File and Storage Services
Type: Member of a 2016 Domain

On the file server I do have to following structure/permission:

  • F:\
    • ANWDTest
      • ZZZ
        • DIMS
        • Wagenbuch

The NTFS permissions to those folders is like that:

  • ANWDTest
    Inheritance disabled
    CREATOR OWNER - Full control - Subfolders and files only
    SYSTEM - Full control - This folder, subfolders and files
    Administrators - Full control - This folder, subfolders and files
    L_NTFS_J_R - Read & execute - This folder only

  • ZZZ
    Inheritance enabled
    L_NTFS_J_ZZZ_R - Read & execute - This folder only

  • DIMS
    Inheritance enabled
    L_NTFS_J_ZZZ_DIMS_R - Read & execute - This folder, subfolders and files
    L_NTFS_J_ZZZ_DIMS_W - Modify - This folder, subfolders and files

  • Wagenbuch
    Inheritance enabled
    L_NTFS_J_ZZZ_Wagenbuch_R - Read & execute - This folder, subfolders and files
    L_NTFS_J_ZZZ_Wagenbuch_W - Modify - This folder, subfolders and files

So far I think this is nothing special, now here is my issue:

When I delete the "Wagenbuch" or the "DIMS" folder this does remove the group "L_NTFS_J_ZZZ_R" from the "ZZZ" folder AND does remove the group "L_NTFS_J_R" from the "ANWDTest" folder... and I do have absolutly no idea why this is happening.

Does anyone see an error in the setup or did face similar issues? I am totally lost here, even no idea where to start searching.. Google did also not help at all.

Thanks for the support!


UPDATE 1: To be sure that is not an issue of our file server - I did setup the same structure on an other 2016 server, and did face the same issue.

UPDATE 2: In the meantime I did the same setup on a 2012 R2 server and there is no issue at all, so this seems to be related to Server 2016.

UPDATE 3: I just did a test setup of the brand new 2019 server - I do have the exact same error as on server 2016.

DFS replication partners not in sync

$
0
0

Hello all,

I have about 100 servers in a DFS replication group, and it has become apparent that data is not replicating from the "master" share. Is there a way that I can mark the contents on one server as the valid and have that data replicate throughout the group?

thanks,

Chris


Moving DFSR drive from one server to another

$
0
0

I was wondering, I’m preparing to “upgrade” some virtual file servers by simply building new servers and swinging the data volumes over to them. The shares on the servers are currently DFSR enabled, and fully synced. My question is this:  Does anyone know if it is necessary to delete and re-create the replication group on the new server, or is all the relevant DFSR data stored on the data drive itself?

Keep in mind that after the switchover, the IP, servername and share names will all be the same as before.

Removing DFS Staging folders after removal of DFS Replication Group and target server.

$
0
0

I have two servers, Server A (W2K12R2) and Server B (W2K16).  Both are set up as file servers.  Files were replicated and now we are discontinuing the replication and Server B will go into the virtual dustbin (The replication was set up incorrectly).

The source server was Server A and it contains staging folders under DfsrPrivate in several locations.  I want to remove them to gain disk space.  Since will not re-instate replication, I do not see the harm in removing the staging folders.  The server will be subjected to a P2V and the hardware retired.  Then I can all kinds of disk space.

However everything I read about the subject says no, but the context is always quite different from my setup.  Comments welcome.

Share Dirve Audit log

$
0
0

Dear Folks,

I have create the Windows fail over cluster and add file server role.

Now I want to enable audit log for perticular on share drive to monitor who's deleting or adding files on that share drive.

Auditing is already enabled but file delete log it's not generated, Please suggest if I doing or missing any setting.

Thanks

Yogesh.

Fileserver - Diskmanagement and Partition - best practice

$
0
0

Hello all,

Right now, we are running a fileserver (Windows Server 2016) with a really big data-disk (D:\) of round about 6,5 TB. This server is virtualized by VMware and the storage is located in the SAN.

Our storage administrator provides us one big LUN and we have created one big vmdk on this LUN. So right now, this server has two vmdk-disks (C:\ and disk D:\). On Disk D:\ we have created one Share, which is mapped by all endusers.

Now we had a discussion with our storage administrator, because he wants to rebuild the whole SAN/LUN environment. Instead of one big LUN, he will provide use 6 or 7 smaller LUNs (with round about 1TB) - because from his site, small LUNs are more comfortable and he can manage them (move) better.

What is the best practice for diskmanagement and partition designing in such a case?

Should we use all the LUNs as different disks (vmdks) and build one partition over all disks? (problem: when there is an issue with one disk, then the whole partition has a failure).

Should we use all the LUNs as different disks and build a partition on each disk? (problem: when using more than one partition, we have to create a share on each partition and therefore the users has to be mapped to all shares - normally we would like to have only one share)

Does anyone know what is the best solution?

creating an all-flash s2d setup using tiered storage and NOT cache

$
0
0

I'm trying to create a 2-node s2d hyperconvered setup on 2019 using nvme+SSDs, but because of my limited capacity, I do NOT want to lose the NVMe capacity to the cache and instead want to create a tiered storage environment.

Since I"m only a 2-node cluster, I am going to enable nested resiliency per https://docs.microsoft.com/en-us/windows-server/storage/storage-spaces/nested-resiliency.

I did the standard enable-s2d so the nvme drives became journal usage, but I have since changed them to autoselect.  

What believe I could change the SSDs to be of mediatype = HDD, but I assume this is not really the correct way.  Likewise, I found that I could set the CACHE volume to be from a specific model, but I can't figure out an equivalent function on the capacity drives.  Ideally, what I want to do is create some nested mirror accelerated parity drives where I could use the NVMe drives for mirror data and the ssds for parity.  

Between the two servers, I have 8x nvme drives and 18 SSD drives which are all roughly the same size, so beyond the fact that 4 doesn't divide into 9 evenly, the loss of the nvme from the capacity of each host is simply too much given the need for nested resiliency. 

So...  is there any good way to create a storage tier that is linked to something like drive model?

Viewing all 13565 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>