We've added our new QNAP TS-879U-RU, firmware version: 3.8.1 Build 20121205, to the Active Directory domain but are unable to set permissions using AD users or groups.
From the web admin UI, "Home >> Access Right Management >> Domain":
Code: Select all
Domain NETBIOS Name: OURDOMAIN
AD Server Name: OURLOCALADS
Domain: Our.Domain.name.ca
Organization Unit: {currently empty but will eventually restrict to our OU}
- selecting "Domain Users" shows zero results. Ditto for groups.
Questions:
Q1) How do we specify an "Active Directory lookup user"? The NAS UI only asks for Administrator, which is fine for joining the domain but after that is not needed, and actually contraindicated by company policy. We use a read-only AD account for things like reading user names, group memberships and permission levels. If QNAP only allows domain admin account to be used we may be forced to return the unit we just purchased.
Q2) How does one change or test Organization Unit settings without forcing a "join-to-domain" cycle? (which is what the [apply] button in the Domain Security panel does).
Q3) What syntax does the "Organization Unit" field want? The docs are silent on this point (.../help/help_privilege.html#LDAP; http://docs.qnap.com/nas/en/index.html? ... ows_ad.htm)
Q4) What is the average initial response time for a support request? I've submitted a request via the online web form and called the phone number and left a voicemail and have yet to receive either email notification or a call back (2 hours and 1 hour respectively). Considering the money spent I'm not favourably impressed thus far.
thanks.