how to disable Remote login for a domain admin user
how deny remote access rdp domain admin user server in network . have network of windowss 2008 , windows 2003 servers single domain controller. want create user id domain admin prevelidges want deny access server in network .
thanks in advance
hi,
as per post, can suggest steps perform.
- first, create group psuedo-admins in domain.
- in ad, delegate control ou's need manage (create/delete accounts, or maybe reset passwords, or prefer).
information regarding active directory delegation tools:
http://technet.microsoft.com/en-us/library/cc756087(v=ws.10).aspx
- afterwards use group policy add group local administrators group on workstations , servers.
group policy editor:
- start > run > gpedit.msc, in “group policy editor” box, follow below path.
- computer configuration\windows settings\security settings\restricted groups
- right click “add group”
- not deploy policy domain controllers ou or ous containing servers.
more information on restricted groups use , benefits:
http://www.windowsecurity.com/articles-tutorials/windows_os_security/using-restricted-groups.html
this depends on having ad configured in manner separate client systems servers.
might helps!
thanks.
Windows Server > Remote Desktop Services (Terminal Services)
Comments
Post a Comment