Yeah we need a good search mechanism for this list, this
was discussed nearly to death last year or the year before when that
functionality change was introduced.
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Almeida Pinto, Jorge de
Sent: Monday, September 26, 2005 2:25 AM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] GPO Restricted Groups gotchas ?
Worked like a
charm!
You have the possibility to use
Member option and/or memberof option
Using the member option you
ENFORCE (or replace) which objects (users/groups) are a member of a group. If
you add an object as a member of the group and it is not on the restricted
groups list, it will be removed again by the system
Using the memberof option you
just tell the system (merge with existing) to add the object to the group
specified and it will still be allowed to be a member of other groups that are
not specified in the list
Cheers,
Jorge
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of [EMAIL PROTECTED]
Sent: Friday, September 23, 2005 07:36
To: ActiveDir@mail.activedir.org
Subject: [ActiveDir] GPO Restricted Groups gotchas ?
I would like to use restricted groups policies to specifiy local Administrative access to application servers. I am sure this has already been tried. I would like to know how this worked or did not work for those who have tried it and where there any unexpected gotchas that happened ?
Thank You ! And have a nice day !
**************************************************************
Mark Lunsford
KAISER PERMANENTE
This e-mail and any attachment is for authorised use by the intended recipient(s) only. It may contain proprietary material, confidential information and/or be subject to legal privilege. It should not be copied, disclosed to, retained or used by, any other party. If you are not an intended recipient then please promptly delete this e-mail and any attachment and all copies and inform the sender. Thank you.