Although the eDir login time restrictions are nicely mapped to the
corresponding AD logon time restrictions using rounding to cope with
the different granularity those time restrictions have absolutely no
effect on file access via SMB/CIFS.

The logon time restriction hinders logon to a PC with this user account
during the restricted time - but in no way and absolutely independent
from any group poliy setting hinders access to network resources using
these credentials during restrited time. This is true for OES servers
with SAMBA or CIFS and for all Windows servers joined to the domain.
Only the NCP connections take care of this setting.

Is there any possbility to get there stricter access limitations
without using some add-on solution?
W. Prindl