Share access and group membership
Hi currently I allocate access to network shares on Windows 2003 via security groups. When I remove a user from one of these groups, in order to deny them access to any of these shares the user needs to log off and back on for the denial to take effect. Is there any way around this? Thanks!
June 16th, 2010 10:31am

Hello, no, the group membership is included in the user token given during logon to the domain. You have to logoff/logon to remove or grant permissions.Best regards Meinolf Weber Disclaimer: This posting is provided "AS IS" with no warranties or guarantees , and confers no rights.
Free Windows Admin Tool Kit Click here and download it now
June 16th, 2010 3:11pm

many thanks, that is what i discovered using a tool called tokenz.exe but wanted to verify! Thanks!
June 16th, 2010 6:44pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics