"Replace a process level token"

  • Thread starter Thread starter bstillion
  • Start date Start date
B

bstillion

This security setting is in the Default Domain Controller
Policy and typically includes the local system account.

What security concerns are there by giving user accounts
this right including "Authenticated Users"?

Reason for the question: On a locked down PC, a user needs
to open Internet Explorer and get access to a share. One of the
desktop support developers has created a WINBATCH script to
do this.
 
Back
Top