Re: Reg to Adm



Hi,

Jennifer Thomas schrieb:
I have a registry key that I converted to ADM (see below). Can this user
key be pushed to users that are not local admins on their box?

- create a OU
- create a user inside
- create a GPO, linked to that OU
- edit the GPO, import your template, activate the setting.

What happens?

2 Minutes to test, but 18 hours to get an answer ...

SURE IT DOES! It would be really sad and a big design mistake in AD/GPO,
if there is a need of having local admin accounts.

Mark
--
Mark Heitbrink - MVP Windows Server - Group Policy

Homepage: www.gruppenrichtlinien.de - deutsch
Blog: gpupdate.spaces.live.com - english
.



Relevant Pages

  • Re: Last Logged-on User
    ... We have a GPO to clear the last logged in user and it does not block SMS or ... GPO, that would explain why only local admins show up--it's before GPO is ... "Garth" wrote: ...
    (microsoft.public.sms.admin)
  • Re: Win 2003 Local Admin Problem
    ... restricted groups setting that added my domain user account to local admins. ... > group from built-in Administrators group by mistake. ... > GPO to a single OU with that computer account only. ...
    (microsoft.public.windows.group_policy)
  • GPOs and Security
    ... I am trying to figure out how to give my administrators in the field ... 2- Create a GPO ... or groups that were specified in the GPO inside the local admins ... didn't have users who required admin rights to their machines. ...
    (microsoft.public.win2000.security)
  • Re: gpo for local admin restrictions
    ... >> Is there a possibility to prevent local administrators from removing the ... >> removing themselves from the domain and I want to put a stop to this. ... >> doing this (they all must remain as local admins though). ... >> in AD but couldn't find any GPO that does this. ...
    (microsoft.public.windows.server.active_directory)