Create A GPO For "Allow Log On Locally" Permission: Friday, June 29, 2018 1:31 PM
Create A GPO For "Allow Log On Locally" Permission: Friday, June 29, 2018 1:31 PM
Recortado de:
https://social.technet.microsoft.com/Forums/windowsserver/en-
US/8d944475-f65f-4456-981a-cf370f351c56/create-a-gpo-for-quotallow-
log-on-locallyquot-permission?forum=winserver8gen
Can you show me how to do this. I am on this screen and I can right click
and say edit and then go into omputer
Configuration, Policies, Windows Settings, Security Settings,
and Local Policies, and then click User Rights Assignment.
but it is not targeting any specific server. Can you give me the steps to
target specific server in this screen below?
Hi,
from your example, we can see that you are editing the GPO named:
Default Domain Controllers Policy (DDCP).
This is a GPO that you shouldn't adjust, without careful planning, design
and understanding, because it only applies to your Domain Controllers
(DCs), and, it applies to *ALL* DCs, *AND* configuration changes to DCs
affect your whole forest/domain.
So, unless you are intending to make this change globally, don't do this
change, to this GPO.
We can also see that your domain, does not have any new Organisational
Units (OUs) created.
Usually, create an OU for users, and another OU for computers.
(Actually, usually, several such OUs are created, based on your
plan/design).
Then, create the desired GPO, add desired settings to that GPO, then,
link that GPO to the desired OU (where you want the settings to apply).
http://technet.microsoft.com/en-US/library/cc754948.aspx
Don
(Please take a moment to "Vote as Helpful" and/or "Mark as Answer",
where applicable.
This helps the community, keeps the forums tidy, and recognises useful
contributions. Thanks!)