G
Guest
I've recently added a new customised GPO in the Domain Controllers OU. I need
to enable some of my guys to shutdown the server and manage security logs.
When I put the new GPO in the top order, the default policy is rendered
useless, Administrators cannot do shutdown anymore. But if I move the
customised GPO below the default policy, it is not effective.
Somehow when I choose to have both policies as enforced, the tasks seems to
be able to perform by both the admins and my tech guys. Question is, if I
need to customise a new GPO for the default domain controller OU, do I really
need to do as mentioned prior or theres a better practice
Please suggest
to enable some of my guys to shutdown the server and manage security logs.
When I put the new GPO in the top order, the default policy is rendered
useless, Administrators cannot do shutdown anymore. But if I move the
customised GPO below the default policy, it is not effective.
Somehow when I choose to have both policies as enforced, the tasks seems to
be able to perform by both the admins and my tech guys. Question is, if I
need to customise a new GPO for the default domain controller OU, do I really
need to do as mentioned prior or theres a better practice
Please suggest