how to disable Remote login for a domain admin user


how deny remote access rdp domain admin user server in network . have network of windowss 2008 , windows 2003 servers single domain controller. want create user id domain admin prevelidges want deny access server in network .

thanks in advance 

hi,

as per post, can suggest steps perform.

- first, create group psuedo-admins in domain.
- in ad, delegate control ou's need manage (create/delete accounts, or maybe reset passwords, or prefer).

information regarding active directory delegation tools:
http://technet.microsoft.com/en-us/library/cc756087(v=ws.10).aspx

- afterwards use group policy add group local administrators group on workstations , servers.

group policy editor:

- start > run > gpedit.msc, in “group policy editor” box, follow below path.
- computer configuration\windows settings\security settings\restricted groups
- right click “add group

- not deploy policy domain controllers ou or ous containing servers.

more information on restricted groups use , benefits:
http://www.windowsecurity.com/articles-tutorials/windows_os_security/using-restricted-groups.html

this depends on having ad configured in manner separate client systems servers.

might helps!
thanks.



Windows Server  >  Remote Desktop Services (Terminal Services)



Comments

Popular posts from this blog

Motherboard replacement

Cannot create Full Text Search catalog after upgrading to V12 - Database is not fully started up or it is not in an ONLINE state

Remote Desktop App - Error 0x207 or 0x607