OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
RE: Terminal Services - Domain Controller - Normal User

From: Laura A. Robinson (laurarobinsonverizon.net)
Date: Fri Feb 25 2005 - 18:14:01 CST


That is not necessary. Given that Administration Mode was specified, I'm
assuming that this is a Win2K DC. In order to give the users rights,
permissions can be granted on the RDP protocol in Terminal Services
Configuration, and if it's a DC, give the logon rights to the user(s) in
question, as well.

Laura

> -----Original Message-----
> From: Michael Scheidell [mailto:scheidellsecnap.net]
> Sent: Friday, February 25, 2005 3:28 PM
> To: Robert Abela; focus-mssecurityfocus.com
> Subject: RE: Terminal Services - Domain Controller - Normal User
>
> Yes, promote them to domain administrators.
>
>
>
> > -----Original Message-----
> > From: Robert Abela [mailto:robertgfi.com]
> > Sent: Friday, February 25, 2005 3:07 AM
> > To: focus-mssecurityfocus.com
> > Subject: Terminal Services - Domain Controller - Normal User
> >
> > HI,
> >
> > To log on via terminal Services (administration mode) on a Domain
> > controller one needs to be an Administrator of the domain (like a
> > member of the enterprise administrators, or domain administrators
> > etc), since a domain controller doesn't have its own groups.
> >
> > Are there any particular permissions or way to set it up to give a
> > normal user logon access (via terminal services,
> administration mode)
> > to the domain controller?
> >
> > Kind regards,
> >
> > Robert Abela - GFI Software Ltd. - www.gfi.com Messaging, Content
> > Security & Network Security Software
> > GFI: MailSecurity - FAXmaker - MailEssentials - LANguard
> >
> >
> >
> >
> > This mail was checked for viruses by GFI MailSecurity.
> > GFI also develops anti-spam software (GFI MailEssentials), a fax
> > server (GFI FAXmaker), and network security and management software
> > (GFI LANguard) - www.gfi.com
> >
> >
> > --------------------------------------------------------------
> > -------------
> > --------------------------------------------------------------
> > -------------
> >
> >
> >
>
> --------------------------------------------------------------
> -------------
> --------------------------------------------------------------
> -------------
>

---------------------------------------------------------------------------
---------------------------------------------------------------------------