Security Compliance

Fileshare permission change fails in ARM

This article describes the solution to a problem with changing a permission for a fileshare in ARM.

First published date

1/12/2024 11:29 AM

Last published date

1/13/2026 5:22 PM

Overview

The following error may show up in the Permissions Tab in the ARM Rich client:
The access was denied for: (ARM related service account)

image.png
 

Product section

Access Rights Manager

Cause

The possible causes are listed below. The 8MAN OU is where the ARM groups are stored.
  1. The 8MAN OU does not exist in AD and needs to be created. It cannot be created because of a lack of authorization in AD.
  2. The 8MAN OU already exists but the related ARM service account configured cannot access it, or the OU structure has changed.
  3. The related ARM service account configured does not have Full control rights on the fileserver path trying to change the permissions.

Resolution

  1. Check if the related ARM service account configured has the right authorization in AD to perform the operation.
  2. Update the new path for the 8MAN OU in the related AD Scan config in ARM Config---Scans as shown in the example below.image.png
  3. Check if the related ARM service account configured has the right authorization in the NTFS filesystem to perform the operation.