Hey, I'm tightening up AD security a little - what are some of the implications of pulling back some of the standard permissions on directory objects such as users and groups?
For example a regular person can't go look to see what groups a user is in, but they can look at a group and see who is in it. Does anyone know of any good white papers on security in terms of directory objects? (So I know what MS means when they say "Read Public Information" vs. "Read Personal Information" vs. "Read Account Restrictions" etc.) Thanks, Alex ========================= Alex Do Desktop OS Specialist Information Technology Services Occidental College (323) 259 1428 Fax: (323) 341 4895 1600 Campus Road Los Angeles, CA 90041 ------ You are subscribed as [EMAIL PROTECTED] Archives: http://www.swynk.com/sitesearch/search.asp To unsubscribe send a blank email to [EMAIL PROTECTED]
