Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.

Knuckleheadz

macrumors member
Original poster
Sep 3, 2007
88
2
United Kingodm
Hi everyone,

I wasn't sure where to post this so here seemed as good a place as any.

I have a Windows 2019 Server running Active Directory and a Windows 10 machine which is joined to the domain and I log in with a Domain Account to that PC.

I have some shared folders on both my MBP (running 10.15) and my Windows 10 PC.

Recently I configured the Network Server Account option in System Preferences and pointed it at my Server 2019 to authenticate with AD which works fine. It's worth adding that I use a LOCAL Account to log in to my MBP and not a Domain Account.

Since making this change I've noticed that any file I copy from my Windows 10 PC to the Shared Folder on my MBP does NOT inherit it's permissions from the destination folder (ie on my MBP) and I have to manually add my Local Mac User Account to that file to allow me to Read/Write even though the share itself has "me" set to Read/Write at the Share/Folder level.

My questions are:
  1. Does it sound like the AD auth has created this issue?
  2. If I migrated my Local Mac Account to a Domain Account would it resolve the issue?
  3. Is there anything else I could do to resolve this as I'm nervous about migration process of a Local Account to a Domain Account?
  4. Does anyone have any expereience of an account migration and can I keep the same login name?
Thanks for any help you can offer
Jon
 

barbu

macrumors 65816
Jul 8, 2013
1,263
1,052
wpg.mb.ca
yes I believe you can migrate the account, a google should help. I know I've seen articles. The other option is to remove your MBP from the domain. Why did you add it initially? You'd want to add it to AD and use a domain account, or leave it standalone and use your local Mac account. The middle way of joining the domain but not using a network account is very confusing to me, so I am curious what problem you were trying to solve with this arrangement.
 

Knuckleheadz

macrumors member
Original poster
Sep 3, 2007
88
2
United Kingodm
thanks for the reply barbu.. I think my intention (and probably lack of understanding) was that it would help with Windows Share authentication but actually as long as my local Mac Account credentials match a Domain Account on the Windows side then authentication / permissions work.

I think you're right, I should remove the Mac from the domain :)
 
  • Like
Reactions: barbu
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.