Role based access in Win2k w/o AD

From: Dmitri Smirnov (Dmitri.Smirnov@roundheaven.com)
Date: 04/25/02


Date: Wed, 24 Apr 2002 17:42:58 -0700
From: "Dmitri Smirnov" <Dmitri.Smirnov@roundheaven.com>
To: <focus-ms@securityfocus.com>

Hello,

two silly questions for MS experts:

1) I'm looking for a way to implement some kind of role-based access on standalone Win2k without AD
(for example: allow a normal user to start and stop IIS). Is any free or commercial products?

2) Is it possible to implement file encryption for a group of people in Win2k using EFS? For example:
allow one person to encrypt a file so other people will be able to decrypt it. Yes, I know it is not possible but may be
I'm missing something...

Dmitri Smirnov, SSCP