D
Dany
Hi,
i'm new to gpo and I need someone to validate my understanding of
filtering.
I want some users be admin of any computers in my network.
I create a security group called "ComputersAdmin" and add some users
into that group. This group can located anywhere in my organisation.
Then I create a GPO called "computeradminGPO" and link it to my
domain.
I modify the gpo and add the "ComputersAdmin" group to be member of
the local administrator group.
After that, I go into the properties/security of my GPO and remove
"Authenticated Users" group. I add "ComputersAdmin" group and grant
the following rights: READ - Apply/Allow Group Policy.
That's it.
Is there something I've missed? Anything that I should be aware?
Thanks in advance and excuse my poor English. It's not my native
language.
Lenny
i'm new to gpo and I need someone to validate my understanding of
filtering.
I want some users be admin of any computers in my network.
I create a security group called "ComputersAdmin" and add some users
into that group. This group can located anywhere in my organisation.
Then I create a GPO called "computeradminGPO" and link it to my
domain.
I modify the gpo and add the "ComputersAdmin" group to be member of
the local administrator group.
After that, I go into the properties/security of my GPO and remove
"Authenticated Users" group. I add "ComputersAdmin" group and grant
the following rights: READ - Apply/Allow Group Policy.
That's it.
Is there something I've missed? Anything that I should be aware?
Thanks in advance and excuse my poor English. It's not my native
language.
Lenny