Re: Domain Admins rights....
- From: "Paul Williams [MVP]" <ptw2001@xxxxxxxxxxx>
- Date: Wed, 1 Jun 2005 17:03:07 +0100
Yes this can be done, but you're not going to like the answer...
Remove them from all protected groups and disable any interactive access to
the DCs.
Otherwise, you need separate forests.
--
Paul Williams
Microsoft MVP - Windows Server - Directory Services
http://www.msresource.net | http://forums.msresource.net
.
- Follow-Ups:
- Re: Domain Admins rights....
- From: Clayton
- Re: Domain Admins rights....
- References:
- Domain Admins rights....
- From: Clayton
- Domain Admins rights....
- Prev by Date: Re: Repeated NetLogon 3210 errors on certain W2K AD clients
- Next by Date: Re: "domain cannot be contacted" error setting up domain trust
- Previous by thread: Domain Admins rights....
- Next by thread: Re: Domain Admins rights....
- Index(es):
Loading