My current domain controller is a 32-bits Windows 2003 DC, that is to be replaced by a Windows 2008 R2.
I thus installed the new machine and promoted it to DC.
After pointing the DSS to this new DC, a few shares became inaccessible.
Although 6 shares have identical ACL's, 2 of them can be accessed without any problem, and 4 cannot.
I've tried pointing the DSS back to the old DC, I've removed it from the domain, switched to internal LDAP and then rejoined and re-applied the ACL's, but all to no avail.
What I forgot to mention: granting access to individual users does not help either, the only thing that works is making users Superuser, but that is not really a solution.