You could build a security configuration template using the Security
templates snap in, then either apply it to your standard image or import it
in to a GPO, on the OU where the computers reside.

Mark

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Cothern Jeff D.
Team EITC
Sent: 04 August 2005 22:02
To: [email protected]
Subject: [ActiveDir] Remove user rights

 
Is there a way thru script to remove an accounts user rights from a
local policy on a machine without affect other accounts or groups that
have that same right?  

For instance.

Ensure that ASPNET account does not have login as a service, login as
batch job user rights.

But I don't want to affect any other accounts that may have that right.

I know I could go in and manually edit the local policy but looking to
do this in a batch file or something so I can ensure that all drive are
built the same. 

Jeff

List info   : http://www.activedir.org/List.aspx
List FAQ    : http://www.activedir.org/ListFAQ.aspx
List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/




List info   : http://www.activedir.org/List.aspx
List FAQ    : http://www.activedir.org/ListFAQ.aspx
List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/

Reply via email to