Re: Limit users to logon only to computer that belong to user's domain
- From: "Paul Bergson" <pbergson@xxxxxxxxxx>
- Date: Fri, 10 Mar 2006 21:08:31 -0600
I have one ou that the users aren't allowed to log onto any machine, it is
only used for domain web access. I have set up a gpo on this ou that
completely locks all access down. No icons on desktop, no programs on the
start menu, etc... I have also included a logoff script which executes
logoff.exe.
If you wanted to use something similar you could place users in a group that
was denied apply for the gpo. That way any users who don't belong to this
group would execute the logoff script. The reason the lockdown is setup is
so if the uesrs are able to stop the logoff script they still have no access
to anything else.
http://www.ss64.com/nt/logoff.html
--
Paul Bergson MCT, MCSE, MCSA, CNE, CNA, CCA
http://www.pbbergs.com/
This posting is provided "AS IS" with no warranties, and confers no rights.
"Stefano Del Furia" <delfo@xxxxxxxxxxxxxxx> wrote in message
news:op.s57qk5mtvqn431@xxxxxxx
Hi all,
i have 100Pcs used in 7 child domains in a single AD forest.
I would like to set a group policy so that an user can logon to his domain
only from PCs that belong to that
domain.
I know that there is an "AD users and computers" account setting for
granting access only to certain PCs but i have 400 users and 100 PCs and
do it manually is a "very annoying game".
Could some one point me to the right direction ???
Thanks in advance
Stefano
.
- References:
- Limit users to logon only to computer that belong to user's domain
- From: Stefano Del Furia
- Limit users to logon only to computer that belong to user's domain
- Prev by Date: Re: Replication
- Next by Date: Re: Utilizing 2003 R2 improvements
- Previous by thread: Limit users to logon only to computer that belong to user's domain
- Next by thread: Re: Zero results returned for uSNchanged search...
- Index(es):
Relevant Pages
|