Hey,

I'm tightening up AD security a little - what are some of the implications of pulling 
back some of the standard permissions on directory objects such as users and groups?

For example a regular person can't go look to see what groups a user is in, but they 
can look at a group and see who is in it.

Does anyone know of any good white papers on security in terms of directory objects?  
(So I know what MS means when they say "Read Public Information" vs. "Read Personal 
Information" vs. "Read Account Restrictions" etc.)

Thanks,
Alex


=========================
Alex Do
Desktop OS Specialist
Information Technology Services
Occidental College
(323) 259 1428
Fax: (323) 341 4895
1600 Campus Road
Los Angeles, CA 90041

------
You are subscribed as [EMAIL PROTECTED]
Archives: http://www.swynk.com/sitesearch/search.asp
To unsubscribe send a blank email to [EMAIL PROTECTED]

Reply via email to