GP for entire comp... not users?

  • Thread starter Thread starter Guest
  • Start date Start date
G

Guest

Ok. I am trying to create a policy management that restricts users of group "users" and not "Administrators". When I do go in and change the GP around, it applies it to the machine, not just to the users group. Is there a way to control just a group of users without a server? Thanks for the help

~Brett
 
You could try filtering local policy by giving deny permissions to the
administrators group to the \winnt\system32\group policy\users folder. Of
course you would have to reverse that change for adminisrator to make future
changes to policy. --- Steve



Brett Patterson said:
Ok. I am trying to create a policy management that restricts users of
group "users" and not "Administrators". When I do go in and change the GP
around, it applies it to the machine, not just to the users group. Is there
a way to control just a group of users without a server? Thanks for the
help.
 
Unfortunately, that didn't work, or won't work because I will constantly be making changes to the policies. Is there anything else short of using a server that would fit my needs? Thanks

~Brett
 
Not that I know of. Taking advantage of Group Policy for multiple user configurations
really requires the use of a domain. --- Steve


Brett Patterson said:
Unfortunately, that didn't work, or won't work because I will constantly be making
changes to the policies. Is there anything else short of using a server that would
fit my needs? Thanks.
 
Back
Top