RE: Granting permissions using Authenticated User Group

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



Aside from the webconfig; how would you deny users to say a Sharepoint site.
Sharepoint (2003) only really lets you grant access.

"MrHusy" wrote:

Hi Cooper
You know Deny permission always wins over Permit. So you can Create a
security-group, give deny permissions for viewing the site or whatsoever.
Whenever you join a member to this group, It wot be able to view the site
although it is also a member of authenticated groups.

Regards
--
MrHusy
http://www.experts-exchange.com/M_3788926.html



"Cooper" wrote:


If you granted everyone permission to say a Sharepoint site using the built
in authenticated user group and then later decided that you you had a small
subset of authenticated users that you did not want to see the site, knowing
that the site doesn't let you "exclude" groups via the UI, what is a good
alternative to using this built in group. I would like automated group like
authenticated users that everyone is a member but where I can exclude this
small group of people. In other words, where I don't have to manage the group
for every new person or every person that leaves. Is there any sort of
functionality to create such a group in AD where I can say basically everyone
except these people?
.



Relevant Pages

  • Re: Applying GPO only to certain computers within an OU...........
    ... Don't forget that deny permissions take precedence over allows. ... I think if you remove the authenticated users grou0p from the acl, ... add in the security group "Yes Software" or whatever (the computers that are ... supposed to get the policy) and give them Read & Apply GPO permissions. ...
    (microsoft.public.win2000.group_policy)
  • Re: GPO was working, but not anymore...
    ... So if you have a user who is in one of those Administrator groups as well ... > I do have deny set for all of the administrator groups. ... Authenticated Users and Domain Users are set to read and apply group policy. ...
    (microsoft.public.win2000.group_policy)
  • Re: hiding contacts from directory search (LDAP)
    ... Joe Richards Microsoft MVP Windows Server Directory Services ... ldap if you don't explicitly deny access to it. ... I tried removing the authenticated users the last time and was locked ...
    (microsoft.public.windows.server.active_directory)
  • Re: hiding contacts from directory search (LDAP)
    ... ldap if you don't explicitly deny access to it. ... I tried removing the authenticated users the last time and was locked ... Joe Richards Microsoft MVP Windows Server Directory Services ... if you change the default (auth users) to DENY and add a ALLOWED group ...
    (microsoft.public.windows.server.active_directory)
  • Re: Allowing authenticated users to access SharePoint site
    ... could just add the Authenticated Users as a group to the site. ... > Hello Francisco, ... > Collutions, Inc. ... >> authenticated users to access a SharePoint site? ...
    (microsoft.public.sharepoint.windowsservices)