G
Guest
I have a question regarding Restricted Groups...
I am trying to make the changes that I've set for Restricted Groups to be as
close to real time as possible. We had another user created today and the
user was added to the built in administrators group by a ghost admin...refer
to an alternate post for the whole story if you're interested...titled
"Security Breach in AD" from 02/07/05
Anyway...In about 5 minutes the user was removed from the built in admin
group as I have configured with Restricted Groups. Trying to make it real
time security, I have changed the default domain policy, the default domain
controller policy, and the local machine policy all to reflect the following
changes trying to make this a real time restriction:
I have enabled the... refresh interval for computers to 0, refresh interval
for domain controllers to 0 for the computer group policies
as well as the refresh interval for users to 0 for the user group policies.
I obviously do not know what I am doing since I don't know what Group policy
to apply and on what interface to get my desired results.
Please help!
thanks
Todd
I am trying to make the changes that I've set for Restricted Groups to be as
close to real time as possible. We had another user created today and the
user was added to the built in administrators group by a ghost admin...refer
to an alternate post for the whole story if you're interested...titled
"Security Breach in AD" from 02/07/05
Anyway...In about 5 minutes the user was removed from the built in admin
group as I have configured with Restricted Groups. Trying to make it real
time security, I have changed the default domain policy, the default domain
controller policy, and the local machine policy all to reflect the following
changes trying to make this a real time restriction:
I have enabled the... refresh interval for computers to 0, refresh interval
for domain controllers to 0 for the computer group policies
as well as the refresh interval for users to 0 for the user group policies.
I obviously do not know what I am doing since I don't know what Group policy
to apply and on what interface to get my desired results.
Please help!
thanks
Todd