Solved

Group Policy help

Posted on 2003-12-10
11
439 Views
Last Modified: 2010-04-14
Does any one know the setting for the group policy that would log off a user from his PC after a pre determined amount of time.  I have tried several including one that said log off user.  It did not work.  I need to make sure all users have logged off all programs each night and this will be my safety net.  Help.

Jon
0
Comment
Question by:stewartje
  • 5
  • 4
  • 2
11 Comments
 
LVL 11

Expert Comment

by:adonis1976
ID: 9914871
0
 
LVL 11

Expert Comment

by:adonis1976
ID: 9914937
0
 
LVL 18

Expert Comment

by:JConchie
ID: 9915191
stewartje;

In your domain level group policy, go to Computer Configuration/Windows Settings/local policies/Security Options and enable both the "Automatically log off users when logon time expires" and the "Automatically log off users when logon time expires (Local) settings: then, still in Active directory users and computers, go into the properties of each user, the account tab, the "Logon Hours" button and restrict the user to whatever hours you want.

You must do both for a forced logoff.
0
 
LVL 18

Expert Comment

by:JConchie
ID: 9915212
PS.......adonis1976's URLs will tell you how to use scripts that run when the computer logs off........none of them will force a logoff at a given time...............
0
 

Author Comment

by:stewartje
ID: 9931280
JConchie,
thanks.  I tried this for the domain security poliy but can not set logon hours.  I work for a doctors office and they work crazy and long hours.  They might need to be logged on when I set them to be logged off.  This is a pain.

Any chance you know how to run AD on a laptop and not the server?  I wish I could view the active directory through MMC on my laptop.


jon
0
Optimizing Cloud Backup for Low Bandwidth

With cloud storage prices going down a growing number of SMBs start to use it for backup storage. Unfortunately, business data volume rarely fits the average Internet speed. This article provides an overview of main Internet speed challenges and reveals backup best practices.

 
LVL 18

Expert Comment

by:JConchie
ID: 9931429
As long as the laptop is running at least W2k Pro, is a member of the domain and can connect to the domain, either directly or remotely, you can put the "Users and Computers" or any other mmc on it.
load the management tools from the server cd onto your laptop, then while connected to the domain, you can setup what ever mmc you want.
0
 

Author Comment

by:stewartje
ID: 9950253
jconchie,

thanks.  i installed the management tools from the Server CD but was not able to load the snap in for Active Directory from the Server.  When I select Users and Computers from the add/remove snap in in MMC I get an error response stating I can only use the Active Directory Users and Computers.  What am I doing wrong????

jon
0
 
LVL 18

Expert Comment

by:JConchie
ID: 9950475
Jon,
If you have an AD domain set up,........then AD Users and Computers is the tool you need to use.  It is there that you access group policy to set up user controls.
0
 

Author Comment

by:stewartje
ID: 9988875
I use the AD tool on the server but now want to use it on my Laptop.  I do not see it in the list to select when I use MMC from my Laptop.  DO you know how to load in on a laptop MMC?

Jon
0
 
LVL 18

Accepted Solution

by:
JConchie earned 250 total points
ID: 9991717
Stewart.........you are covering a lot of ground here for one question......but, to load the AD users and computers on a work station (IE your laptop) you must load the management tools from the windows 2000 server CD......using an account with domain admin rights.
Put the Cd in your laptop and when the opening splash screen comes up, choose "browse this CD" and go to the adminpak.msi in the I386 directory.  You can also add the windows 2000 support tools from the support folder.
0
 

Author Comment

by:stewartje
ID: 9996751
j conchie,

thanks you suggestions worked for the AD.  it worked.  still working on the group policy issues.  lots to learn.

jon
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Robocopy - migrate user shares access denied 6 1,503
kerberos errors 7 545
Windows 2000 Server to 2008 upgrade 8 513
Windows Foriegn Disk 3 130
NTFS file system has been developed by Microsoft that is widely used by Windows NT operating system and its advanced versions. It is the mostly used over FAT file system as it provides superior features like reliability, security, storage, efficienc…
With the rapid rise in mobile usage, mobile devices are here to stay and have become an integral part of doing business. Here are 9 great apps for your BYOD environment.
Internet Business Fax to Email Made Easy - With eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…
Internet Business Fax to Email Made Easy - With  eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, f…

867 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now