Hi folks,

Just to let you know what I did to only allow administrators to logon to the DC. I added to the “Allow logon locally” to the default domain controller policy only “Administrators and Domain Administrators” as opposed to only “Administrators”. This seems to have solved my problem. Thanks for the advice.

Cheers,

George

 

 


From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Tyson Leslie
Sent: Monday, July 12, 2004 17:10
To: [EMAIL PROTECTED]
Subject: RE: [ActiveDir] GPO

 

Permissions on a policy will not modify the user's ability to log onto a domain controller.  There is likely a setting in the policy itself that is allowing Authenticated Users the right to log on to the DCs.    Windows Settings\Security\Local Policies\User Rights, and the Log On Locally item, IIRC...

 

    TL

 


From: George Arezina [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 12, 2004 7:36 AM
To: [EMAIL PROTECTED]
Subject: [ActiveDir] GPO

Hi folks,

I have a problem with default domain policy and default domain controller policy. I have given read and apply permissions to authenticated users on both policies. However, an authenticated user is able to logon to the DC. Can someone please direct me in the right direction and tell me how to configure so that the only people able to logon on the DC are administrators?

Thanks…

 

 

 


Informacija sa Opportunity International Serbia putem e-maila je bez garancije. Zakljucivanje pravnih poslova putem ovog medija nije dozvoljeno. Ovaj e-mail moze sadrzati poverljive i/ili povlascene informacije. Ukoliko ste ovaj e-mail primili greskom, ovim putem vas obavestavamo da je svako otkrivanje, kopiranje, distribucija ili preduzimanje bilo kakvih aktivnosti u vezi njegovog sadrzaja strogo zabranjeno i moze biti nezakonito. Ukoliko ste e-mail primili greskom, molimo Vas da nas odmah obavestite tako sto cete odgovoriti na ovaj email, a zatim ga izbrisite iz vaseg sistema.
____________________________________________________________

____________________________________________________________
The exchange of messages with Opportunity International Serbia via e-mail is not binding. Declarations regarding legal transactions must not be exchanged via this medium. The information contained in this e-mail message is confidential and intended exclusively for the addressee. Persons receiving this e-mail message who are not the named addressee (or his/her co-workers, or persons authorized to take delivery) must not use, forward or reproduce its contents. If you have received this e-mail message by mistake, please contact us immediately and delete this email message beyond retrieval.

Reply via email to