Solved

How Can I Restrict Login to Workstations by Group?

Posted on 2007-11-28
2
1,123 Views
Last Modified: 2008-03-12
hi,

school environment, teacher and student use computers, win XP for workstations, win 2003 server for the AD setup, teacher and students in their own groups and OUs.

how can i use GPO to not allow students from logining into teacher workstations?

thanks.

-m
0
Comment
Question by:ysdadmin
2 Comments
 
LVL 5

Accepted Solution

by:
Radar07 earned 125 total points
ID: 20370396
Place all teacher computers into one OU then use GPO to "Deny log on locally" to the student security group under:
Computer Configuration | Windows Settings | Security Settings | Local Policies | User Rights Assignment

Apply this policy to the teacher computer OU and your problem shoudl be solved.
0
 
LVL 11

Expert Comment

by:bsharath
ID: 20371049
Restrict you mean accessing C$ shares or accessing them through console or remote desktop.iF we are talking about less machines then
For Remote access
 Right-click My computer>Properties>Remote>Select remote users. Delete any user group exist here add only users that you want
or
*Start>Settings>Control Panel>Windows Firewall.
                   *Enable firewall. Then click exceptions. Check the box of Remote Desktop. Double-clikc Remote Desktop, check the box of TCP 3389.
                  *Click Change Scope, then click custom list. Now type here the IP address whic is only allowed to connect to that PC. Apply and exit.

If they are less users then you can add the machine names to the users in Account > Log on to and the machine names.So that only machines that the user has the names will be able to access the computer.

Hope this helps...
0

Featured Post

MIM Survival Guide for Service Desk Managers

Major incidents can send mastered service desk processes into disorder. Systems and tools produce the data needed to resolve these incidents, but your challenge is getting that information to the right people fast. Check out the Survival Guide and begin bringing order to chaos.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Best practices power settings GPO Win 10 4 121
Moving RDP Server to New Server. 3 73
Event ID: 1008 / Source: Microsoft-Windows-Perflib 2 225
Questions about DHCP migration 5 106
Scenerio: You have a server running Server 2003 and have applied a retail pack of Terminal Server Licenses.  You want to change servers or your server has crashed and you need to reapply the Terminal Server Licenses. When you enter the 16-digit lic…
ADCs have gained traction within the last decade, largely due to increased demand for legacy load balancing appliances to handle more advanced application delivery requirements and improve application performance.
Exchange organizations may use the Journaling Agent of the Transport Service to archive messages going through Exchange. However, if the Transport Service is integrated with some email content management application (such as an antispam), the admini…

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question