Solved

Adding groups to Power Users group on servers

Posted on 2008-06-16
3
295 Views
Last Modified: 2010-03-17
Hi

I would like to add a couple of Domain Security Groups to the Power Users group on a selected group of servers.

I understand I can use the Restricted Groups functionality of Group Policy to do this, however I when trying to add the Power Users group as a Restricted Group, I am unable to do so - any ideas?

Thx- urgent so max points
0
Comment
Question by:kam_uk
  • 2
3 Comments
 
LVL 70

Accepted Solution

by:
KCTS earned 500 total points
ID: 21798565
First put the users that you want to give local admin rights to into a security group

Create and OU that contains the computers that you want them to have rights on and put the computers into the OU. Note that this cannot be the Computers Container.

Create a group policy that configures the security group as a Restricted Group, and under the "This group is a member of...", option add "Power  users"

Link the GPO to the OU that contains the computers

Run gpupate/force to update the policy

See http://support.microsoft.com/kb/810076

   
0
 
LVL 3

Author Comment

by:kam_uk
ID: 21798668
Thanks

I have created a domain security group and configured this as a Restricted Group, however I cannot add Power Users under the 'this group is a member of'? There are only Groups to add, not built-in groups?
0
 
LVL 3

Author Comment

by:kam_uk
ID: 21798732
In fact, I can't seem to add this domain group to any of the local groups (administrators, remote desktop users, power users etc).

Any ideas?
0

Featured Post

Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In-place Upgrading Dirsync to Azure AD Connect
This article describes my battle tested process for setting up delegation. I use this process anywhere that I need to setup delegation. In the article I will show how it applies to Active Directory
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

828 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question