Re: Group assigned rights
From: Steven L Umbach (n9rou_at_attbi.com)
Date: 06/10/03
- Next message: Nick Finco [MSFT]: "Re: Local Security Settings"
- Previous message: Steven L Umbach: "Re: secrity patch"
- In reply to: Disinfectant: "Group assigned rights"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Tue, 10 Jun 2003 00:58:51 GMT
In the security policy/user rights you can customize some rights,
but not many. For instance you could not allow guests or regular users to
change their tcp/ip configuration - you absolutely must be an administrator
[there are workarounds in some cases, but still administrator credentials
are required]. XP is providing more default groups to accomplish such tasks.
Just be careful giving guests additional rights and you probably want to put
their computers in a separate OU if you want to implement any user rights
changes. You certainly would not want those changes to show up on a critical
server, etc. --- Steve
"Disinfectant" <disinfectant@anonymous.com> wrote in message
news:#d9dkmpLDHA.1968@TK2MSFTNGP11.phx.gbl...
> Hi all!
>
> I was wondering... you know when you assign a user to a group and so that
> user is bound to the group's restrictions, how do you modify those
> restrictions?
> E.g.
> You have a user called "John" who is a member of the group "Domain
Guests".
> He would recieve guest user rights so he couldnt mess with system settings
> when logged on. Where do you define the settings that allow and disallow
> system access?
>
> I would like to create a group in our domain that allows domain guests to
> change system settings but still have the other restrictions in place.
>
> Kind Regards
> Disinfectant
>
>
- Next message: Nick Finco [MSFT]: "Re: Local Security Settings"
- Previous message: Steven L Umbach: "Re: secrity patch"
- In reply to: Disinfectant: "Group assigned rights"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|