Hello -
Active Directory and Internet Authentication Service (IAS) is being used to authenticate our users for various services (VPN, wireless, etc.). All of our user accounts currently have logon hour restrictions. I have a desire to remove these logon restrictions and I'm hoping it could be done multiple places. Here is my order of preference:
1) If a remote access policy within IAS is being used to authenticate, ignore the logon hour restrictions set on the individual user accounts.
2) If that is not possible, can I specify: If user account is a member of "VPN Users" group, ignore logon hour restrictions that are set on the individual account.
3) If the above options are not possible, is there an easy way to just disable the logon hour restrictions on all user accounts and be done with it?
Thanks!
Start Free Trial