The conditions are as follows:
All other shared file-system directories
Share:
The group Everyone must not be present in the Share ACL. The groups Authenticated Users and Domain Users can be present in the Share ACL as long as the groups Everyone, Authenticated Users, or Domain Users are not present in the NTFS ACL. It is recommended that a group with only those users that need access be present in the ACL.
NTFS:
The group Everyone must not be present in the NTFS ACL. The groups Authenticated Users and Domain Users can be present in the NTFS ACL as long as the groups Everyone, Authenticated Users, or Domain Users are not present in the Share ACL. It is recommended that a group with only those users that need access be present in the ACL.