Windows Server 2008 - Non-Domain users can see my server shares

Posted by ManovrareSoft on Server Fault See other posts from Server Fault or by ManovrareSoft
Published on 2012-12-18T04:19:24Z Indexed on 2012/12/18 5:04 UTC
Read the original article Hit count: 158

Windows Server 2008 - Server Machine
Windows 7 Professional - Client Machine

I have a domain. It was setup by the client. The shares on the server are restricted correctly when a user logs on to the domain and uses their workstation, I have a few groups setup to restrict some access but the groups are at their core "Domain Users". The problem I am having is that when a user brings in a laptop with Windows 7 Pro on it, they can type up the name of the server in the "Run Dialog" on the start menu like "\SERVERNAME\" and access all of the shares freely... because they are not logged in to the domain there are no restrictions it seems.

I have reviewed the permissions on the folders and they all have to be "Domain Users" and I have removed "Everyone" from the list of people able to see it. Guest access is also disabled...

What am I doing wrong? Only group in the list is "Domain Users" isn't a domain user a user that is logged in to the domain? How do I stop non-domain users from seeing the shared folder?

I noticed this on Windows Server 2003 too at another time. I assume they both had similar security issues and neither were set up by myself so I am not sure what could have been enabled or specifically deactivated that makes this issue appear.

© Server Fault or respective owner

Related posts about windows-server-2008

Related posts about active-directory