Robert--
I don't see this elsewhere on the list (haven't gotten through today's inbox
yet), so I'll have a go.
We're doing this around here with our administrative machines, and I'm sorry
we didn't do it when we installed 'em. Go to each workstation (ugh!) and
login as administrator. Open the User Manager (NOT the user manager for
domains). Open the Administrator's group (the local one). Click the Add
button, and be sure to select the desired local user FROM THE DOMAIN users
list (see the List Names From dropdown box). Took me a while to catch on to
the fact that the domain user isn't the same as the local user of the same
name. Now it works.

--Cal Frye, Western Reserve Academy, Hudson, Ohio

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]On Behalf Of Robert Everland
III
Sent: Thursday, November 04, 1999 6:33 PM
To: [EMAIL PROTECTED]
Subject: [IMail Forum] Off topic - User Rights


 I am running a mix enviroment of NT Server and NT Workstation. When the NT
workstations log on to the NT server I can't do anything locally to the
machine, as
in share files, use the user mahcine and get any share that I process though
loing
scripts unless they are a member of Domain Admins which is a global group.
Only
thing though that is if they are a member of Domain Admin they are able to
do
everything to the computer and I have no idea why. Where are the rights for
groups
given at? I would like the computers to have admin rights at thier computers
only
and have the rights I give them at the shares seperate. Can I even do this
for NT
workstation or do I have to log on locally and do it like that? I used to
have a
domain with all 95 98 and since there are no computer rights they were able
to do
whatever they wanted. Also no policies are enable disabling anything.

Bob Everland


Please visit http://www.ipswitch.com/support/mailing-lists.html
to be removed from this list.

Please visit http://www.ipswitch.com/support/mailing-lists.html 
to be removed from this list.

Reply via email to