?
Solved

MS AD Security Group Membership adding a local user

Posted on 2007-11-28
4
Medium Priority
?
404 Views
Last Modified: 2010-04-21
I have a problem with trying to add a local user from a member server in my AD to a global security group. I don't see how to do this.
The only way I see of doing this is to create a group on the Local Server adding the network users and the one local user in the server to this group.

Can someone let me know if I can add a local user to an AD security group or if I have to go the route of creating the local group.
0
Comment
Question by:Ima Selco
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
4 Comments
 
LVL 48

Expert Comment

by:Jay_Jay70
ID: 20370696
you cannot add a local group to a domain group, other way round yes, but not the way you are trying to do it
0
 
LVL 11

Accepted Solution

by:
bsharath earned 500 total points
ID: 20370986
ikeith

Create a user on the ADS and then add the user to the group...Change the option Do to Account tab >  log on to  and add the machine name of the server...So that the user cannot be used in any other machine...That way the user is restricted and your goal is done...
0
 

Author Comment

by:Ima Selco
ID: 20454411
Jay_jay70 I am not trying to add a local group to a domain group I am trying to add a local user from a member server to a domain group. My alternative is to create the local group adding the domain users not domain groups to it.
0
 

Author Closing Comment

by:Ima Selco
ID: 31411573
While this wasn't really what I wanted which was to add a local user to a domain group - can't do. Your solution works very well since I had to create a domain user which I added to a group on the member server. Now I can be assured that this account can only access that server which is what was really wanted. Thanks!
0

Featured Post

Enroll in August's Course of the Month

August's CompTIA IT Fundamentals course includes 19 hours of basic computer principle modules and prepares you for the certification exam. It's free for Premium Members, Team Accounts, and Qualified Experts!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article demonstrates probably the easiest way to configure domain-wide tier isolation within Active Directory. If you do not know tier isolation read https://technet.microsoft.com/en-us/windows-server-docs/security/securing-privileged-access/s…
A hard and fast method for reducing Active Directory Administrators members.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
Suggested Courses

752 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question