Enabling ADMIN$ Share Access on Windows 2000/2003 VMs
If the ADMIN$ share is not available on any Windows-based virtual guest, create the share using the procedure detailed below:
- Open the Windows Explorer on the virtual machine, browse for the corresponding Windows directory in the C drive, right-click on it, and select the Sharing option from the shortcut menu.
If the admin$ share does not pre-exist on the Windows guest, then Figure 1 appears indicating the same.
On the other hand, if the admin$ share pre-exists, Figure 2 appears. In such a case, first, remove the admin$ share by selecting the Do not share this folder option from Figure 2 and clicking the Apply and ok buttons. After this, you will have to repeat step 1 of this procedure to open Figure 1. Then, proceed as indicated by step 3 onwards.
- Next, to enable the eG agent to communicate effectively with the Windows guest, you need to ensure that the permission to access the admin$ share is granted to an administrative user (local/domain); also, the credentials of this user should be passed while configuring the eG monitoring capabilities - i.e., while configuring the Oracle VM server tests. To grant the access permissions, click on the Permissions button in Figure 3.
By default, the admin$ share can be accessed by Everyone (see Figure 4). To grant access rights to a specific administrative (local/domain) user, select the Add button in Figure 4. When appears, select the domain to search from the Look in list. The valid user accounts configured on the chosen domain then appear in the box below. From this box, choose the administrator's account and click on the Add button to add the chosen user account to the box below the Add button.
Figure 5 : Selecting the administrative user to whom access rights are to be granted
Finally, click the ok button. You will then switch to Figure 6, where the newly added administrator account will appear.
- Select the newly added administrator account from Figure 6, and then, using the Permissions section, grant the administrator Full Control, Change, and Read permissions.
- Finally, click the Apply and ok buttons in Figure 6 to register the changes.
Here again, you need to add the same administrator account, which was granted access permissions earlier. To do so, click the Add button in Figure 7, pick a domain from the Look in list of , select the said administrator account from the domain users list below, and click the Add button (in ) to add the chosen account. Then, click the ok button in .
Figure 8 : Adding the administrator account
This will bring you back to Figure 7, but this time, the newly added domain administrator account will be listed therein as indicated by .
- Finally, click the Apply and ok buttons in Figure 9.
Enabling ADMIN$ Share Access on Windows 2008 VMs
To enable the admin$ share on a Windows 2008 VM, do the following:
Open the Windows Explorer on the virtual machine, browse for the corresponding Windows directory in the C drive, right-click on it, and select the Share option from the shortcut menu.
Figure 10 : Selecting the Share option from the shortcut menu
Figure 11 : Clicking on Advanced Sharing
Select the Share this folder check box in Figure 12 that appears, enter admin$ against Share name, and click on the Permissions button in Figure 12, to allow only a local/domain administrator to access the folder.
When Figure 13 appears, click on the Add button therein.
To allow a domain administrator to access the folder, first, ensure that a valid domain is specified in the From this location box of Figure 14. If you want to grant access to a local administrator instead, ensure that the name of the local host is displayed in the From this location box. To change this specification, use the Locations button in Figure 14. Then, enter the name of the local/domain administrator in the Enter the object names to select text area, and click the ok button.
The newly added user will be listed in the Group or user names section, as depicted by Figure 15. Select this user, and then, check all the three check boxes under Allow in the Permissions for <user> section in Figure 15. Then, click the Apply and ok buttons therein.
Figure 16 : Applying the changes
Alternatively, by adding a new entry in the Windows registry, you can quickly enable the admin$ share. The steps for the same are discussed hereunder:
- In Run prompt type regedit to open registry editor.
Browse through the following sub key:
Create a new entry with the below information
- Key Name : LocalAccountTokenFilterPolicy
- Key Type : DWORD (32-bit)
- Key Value : 1
- Exit registry editor.
As with any change to the registry, ensure that the above-mentioned change is also performed with utmost care, so as to avoid problems in the functioning of the operating system.