跳转到主内容

Vscan服务器用户身份验证失败、EMS:vscanBadUserPrivAccess

i
Knowledge Base guidance

This article may include metadata, visibility, validation state, and related support guidance.

适用场景

  • ONTAP 9
  • CIFS
  • Vscan
  • Trellix (原McAfee) Endpoint Security Storage Protection 2.1.x -2.4.x

问题描述

  • Vscan服务器仍在尝试使用其计算机\计算机帐户进行身份验证(而不是配置的扫描程序池特权用户)来访问ONTAP_ADMIN$ 共享

<node> ERROR Nblade.vscanBadUserPrivAccess: For Vserver "<vserver>", the attempt to connect to the privileged ONTAP_ADMIN$ share by the client "<ip-address>" is rejected because its logged-in user "<domain\computer-machine account$>" is not configured in any of the Vserver active scanner pools

之后

  • 禁用"网络安全:允许本地系统对NTLM使用计算机身份"

EMS日志中经常出现错误(vscanBadUserPrivAccess)

  • 禁用"Microsoft  Windows Defender服务"

Vscan的常见EMS消息

  • 此问题描述可能会被客户端计算机/用户视为"访问被拒绝:文件受感染"(如果启用了强制扫描)、或者在负载增加时为用户显示"显著延迟"(如果禁用了强制扫描)