OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
RE: group policy question

From: Sean Warnock (swarnockwarnocksolutions.com)
Date: Mon Oct 20 2003 - 11:16:33 CDT


        Yes, if you go through the Windows 2000 resource kit they list a
couple examples of controlling group policy objects through security
permissions. You can build a normal security group up with both users
and machines. Next you remove the default permission of everyone from
the group policy object that you are working with. Then add read and
execute permission for the GPO to the new security group that you
created. I have not used a security group to control if a machine has
access to a GPO but I am assuming you could add a machine to a security
group. I generally use OU (organizational units) to break up machines
into departments and then use user groups to control everything else.

Sean

-----Original Message-----
From: David Y. Ng [mailto:dngcmhsweb.org]
Sent: Friday, October 17, 2003 11:03 AM
To: focus-mssecurityfocus.com
Subject: group policy question

In a AD setup, can I have a group policy
that will only take effect if those
certain group of people will login to
a specific machine?
 
So, if I have SERVER-C, I want all certain domain
users to have special GP if they are
logged on to that machine. Only to that
machine and only to those bunch of people.
Is this possible?

------------------------------------------------------------------------
---
FREE Whitepaper: Better Management for Network Security

Looking for a better way to manage your IP security?
Learn how Solsoft can help you:
- Ensure robust IP security through policy-based management
- Make firewall, VPN, and NAT rules interoperable across heterogeneous
networks
- Quickly respond to network events from a central console

Download our FREE whitepaper at:
http://www.securityfocus.com/sponsor/Solsoft_focus-ms_031015
------------------------------------------------------------------------
---

---------------------------------------------------------------------------
FREE Whitepaper: Better Management for Network Security

Looking for a better way to manage your IP security?
Learn how Solsoft can help you:
- Ensure robust IP security through policy-based management
- Make firewall, VPN, and NAT rules interoperable across heterogeneous
networks
- Quickly respond to network events from a central console

Download our FREE whitepaper at:
http://www.securityfocus.com/sponsor/Solsoft_focus-ms_031015
---------------------------------------------------------------------------