P.S. The up side to this, is that you can set the domain user rights on the base image, so that no user accounts have to be set up at all on the machine - Once you image the machine, you can run Windows update, and deploy the machine. It's REALLY easy, but I still don't recommend it.
Main Topics
Browse All Topics





by: Joey_dubPosted on 2006-03-09 at 18:41:40ID: 16151350
Hey ulink,
The only way that i know to set up permissions with local admin rights for all users is to set up "domain users", and grant them local admin access.
Now be VERY careful here.
This means that ANY user account on the domain, even a domain guest account, or domain training account with a generic password, will have full local admin rights as long as the user authenticates to the domain.
What makes this even worse, is that "domain users" even after configured, will not show in the user accounts window in XP or 2000 once configured, even when logged on as a full admin or domain admin. It is local to the machine only. If you want to reset the permissions for the "domain users" you will need to continue as if y0ou were adding a new user called "domain user" and set the permissions to something else like "guest". Then once tha6t change is made and accepted, domain users will disappear from the list again.
Joe W