Re: Question about Groups
- From: "Joe Richards [MVP]" <humorexpress@xxxxxxxxxxx>
- Date: Mon, 05 Dec 2005 21:52:27 -0500
It depends on what mode the domain is in.
If the domain is in NT4 mode aka mixed mode the members will be able to see Global groups from any domain and local groups on the member servers themselves.
If the domain is in native mode, the members can see Universal security groups from any domain, Domain Global groups from any domain, and domain local groups from the domain the member is part of.
You will not be able to use a domain local group for what you are trying to do until you enter native mode.
-- Joe Richards Microsoft MVP Windows Server Directory Services www.joeware.net
Josh Messerschmitt wrote:
I'm confused by what groups servers can see in a domain. A domain controller can see DL & G groups, however, a normal server can only see G groups. I don't understand this as I'm having trouble assigning permissions in AD to G groups, and issues assigning file rights to DL groups on a non-DC. I'm wanting to grant a single group permissions to modify the home folder attribute in AD and create the folder on a non-DC. I'm in mixed mode (obviously) and am looking for some type of explanation as to why I can't do this.
--
Josh Messerschmitt
.
- References:
- Question about Groups
- From: Josh Messerschmitt
- Question about Groups
- Prev by Date: Re: Site Command Line tool
- Next by Date: Re: Show when Active Directory user accounts were created?
- Previous by thread: Re: Question about Groups
- Next by thread: Re: Dropping Network Connection
- Index(es):
Relevant Pages
|