Re: Local user privileges
- From: "Mark Heitbrink [MVP]" <spam-only@xxxxxxxxxxxxxxxxxxxxx>
- Date: Sat, 17 Sep 2005 11:13:27 +0200
Hi,
Angel Massa schrieb:
> [...]
> 4.- I loog for Administrators groups and check members.
> 5.- Here I have DOMAIN\Domain users on the local Administrators group.
> [...]
> I don't know why domain users group has to be added to local administrador
> group to work.
I´m irritated. Thats definitly not the default behavior ... :-(
Did you worked with "Restricted Groups" in a GPO?
It´s definetly not a matter of the roaming profile.
Try this:
- create a new OU
- place one computer object in it (just to make sure that you
are only configuring this pc ...)
- create a new GPO on this OU
- Edit the restricted Groups
New Group: Administrators only add Administrators and Domain Admins
New Group: Users add DomainUSers
- make a gpupdate /force on the client and look what happens ;-)
Mark
--
Mark Heitbrink - MVP Windows Server
Homepage: www.gruppenrichtlinien.de
W2K FAQ : http://w2k-faq.ebend.de
PM: Vorname@Homepage, Versende-Adresse wird nicht abgerufen.
.
- Follow-Ups:
- Re: Local user privileges
- From: Angel Massa
- Re: Local user privileges
- References:
- Local user privileges
- From: Angel Massa
- Re: Local user privileges
- From: Mark Heitbrink [MVP]
- Re: Local user privileges
- From: Mark Heitbrink [MVP]
- Re: Local user privileges
- From: Angel Massa
- Re: Local user privileges
- From: Mark Heitbrink [MVP]
- Local user privileges
- Prev by Date: Re: Resetting Local Policy back to default
- Next by Date: Remove Programs menu from Start Menu
- Previous by thread: Re: Local user privileges
- Next by thread: Re: Local user privileges
- Index(es):
Relevant Pages
|