Creating an anonymous SMB network share

Today I needed to open a SMB share to be accessible outside of the domain, without asking for a password. Followed the instructions of Nikola’s blog and it’s done. Remark that Winodows is so intuitive that you need written instructions to achieve such a simple task:

  1. Share a folder by opening folder properties, navigating to Sharing tab and clicking
    Advanced Sharing…
  2. Enable sharing and click Permissions
  3. Add Everyone (should already be there), Guest and ANONYMOUS LOGON and give them Read access
  4. Open Group Policy Editor (hit Ctrl+R, type gpedit.msc and hit enter)
  5. Navigate to Computer Configuration → Windows Settings → Security Options
  6. Change following:
    • Accounts: Guest account status – change to Enabled
    • Network access: Let Everyone permissions apply to anonymous users – change to Enabled
    • Network access: Restrict anonymous access to Named Pipes and Shares – change to Disabled
    • Network access: Shares that can be accessed anonymously – enter name of share you created in the text field

This let me access the share \\<MachineName>\Share without providing any login information.


This entry was posted in IT stuff and tagged , , , . Bookmark the permalink.

2 Responses to Creating an anonymous SMB network share

  1. Pingback: Capturing SCCM TS logs - The PowerShell way - Deploy Tripper

  2. Pingback: Updating Lenovo ThinkPad/ThinkCentre BIOS as SCCM application - Deploy Tripper

Leave a Reply

Fill in your details below or click an icon to log in: Logo

You are commenting using your account. Log Out /  Change )

Google photo

You are commenting using your Google account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s