Computer Management Security Question
From: Dave W. (DaveW_at_discussions.microsoft.com)
Date: 07/27/04
- Next message: GRCC: "Authenticated users question"
- Previous message: Mike Herchel: "Re: hacked server"
- Next in thread: Danny Sanders: "Re: Computer Management Security Question"
- Reply: Danny Sanders: "Re: Computer Management Security Question"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Tue, 27 Jul 2004 10:04:56 -0700
We use a Windows 2003 DC and have found that all of our users can choose the "Manage" on "My Computer" and then choose the domain controller PC as the PC to manage. They can then add shares, shut down services, etc. which defeats all the security.
How can I prevent users from specifying another computer name in the computer management console snap-in and/or how do I restrict a computer from allowing on specific users to connect.
Note that all of our users are administrators which I know is bad, but they are software developers and need to constantly re-install, update registries, etc.
- Next message: GRCC: "Authenticated users question"
- Previous message: Mike Herchel: "Re: hacked server"
- Next in thread: Danny Sanders: "Re: Computer Management Security Question"
- Reply: Danny Sanders: "Re: Computer Management Security Question"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|