All Products
Search
Document Center

Cloud Storage Gateway:Set SMB security

Last Updated:Mar 25, 2025

You can set Server Message Block (SMB) security to determine whether to enable server-side signing.

Prerequisites

  • An SMB share is created for the gateway. For more information, see Create a share.

  • The version of the gateway is V1.10.4 or later. Only gateway V1.10.4 and later support SMB security settings.

Procedure

Important

If you enable server-side signing, guest access is disabled. To allow access to the share, you need to configure SMB user access. For more information, see Add an SMB user.

  1. On the Gateways page of the Cloud Storage Gateway (CSG) console, click the ID of the gateway. On the page that appears, click SMB Security Settings > Configure.

  2. In the SMB Security Settings dialog box, select an option for Security Level and click OK.

    Option

    Description

    Client Negotiation

    Requests are established based on client negotiation. If you want maximal compatibility with clients in the environment, we recommend that you select this option.

    This is the default option for Security Level.

    Forced Signing

    The gateway allows connections only from SMBv2 and SMBv3 clients for which signing is configured. This option applies to SMB clients on Windows Server 2008 and later.