无法使用GMSA帐户访问CIFS共享
- Views:
- 15
- Visibility:
- Public
- Votes:
- 0
- Category:
- ontap-9
- Specialty:
- cifs<a>2009224944</a>
- Last Updated:
- Invalid Date
适用场景
- ONTAP 9
- Microsoft GMSA帐户(组托管服务帐户)
问题描述
- 无法使用GMSA帐户访问CIFS共享
- access-check authentication show-creds显示"SecD Error:Not user SID"
cluster::> set advanced
Warning: These advanced commands are potentially dangerous; use them only when directed to do so by NetApp personnel.
Do you want to continue? {y|n}: y
cluster::> vserver services access-check authentication show-creds -node node1 -vserver vs1 -win-name domain\gmsa_account
Vserver: vs1 (internal ID: 27)
Error: Get user credentials procedure failed
[ 0 ms] Using a cached connection to
dc1.domain.com
[ 1] DC translates S-1-5-21-1172865061-1541640452-3102224447-29
633 to 'domain\gmsa_account'
**[ 1] FAILURE: Cannot get credentials for 'domain\gmsa_account',
** SID 'S-1-5-21-1172865061-1541640452-3102224447-29633'.
** Not a user or machine account
Error: command failed: Failed to get user credentials. Reason: "SecD Error: not user sid".