Solved

Cannot assign new group as Primary Group

Posted on 2008-11-01
4
1,114 Views
Last Modified: 2012-05-05
I just created a new Domain Local group named FTPOnly.  I want to place a domain user account named FredTPuke in FTPOnly and in no other group.  By default, FredTPuke is in the Domain Users group.  I want to promote FTPOnly to FredTPuke's Primary Group, but I can't.  The "Set Primary Group" button is disabled when I select FTPOnly.  (See attached.)  Why?
SS1---Primary-Group.JPG
0
Comment
Question by:jdana
  • 2
  • 2
4 Comments
 
LVL 21

Expert Comment

by:dan_blagut
ID: 22857205
Hello
There is no need to set the primary group if you don't use Mac in your network. Anyway, all user account must be member of Domain users. So if you use the domain users group to assign right I suggest to find another group and to avoid use of built in groups for that.

Dan
0
 

Author Comment

by:jdana
ID: 22868396
Dan,

Thanks for the response.  I'll elaborate on the initial question.  I just installed Windows FTP Server on one of my home network servers (WS2003).  I disabled anonymous logons to prevent abuse of the site.  I want to create a single domain logon (FredTPuke, note the initials) that has permissions to access a single folder.  I suppose I could spend a lot of time hobbling the Domain Users group to accomplish, but that would be the incorrect approach.  So, I want a domain user that has no inherit permissions on the domain.  It seems like this should be an option.
0
 
LVL 21

Accepted Solution

by:
dan_blagut earned 500 total points
ID: 22868534
Then what you can do is to add the user in the guest group, then change the primary group to guests and delete the domain users.
Instead of guests you can create another group just for your need and make the account member of this newly created group.

Dan
0
 

Author Closing Comment

by:jdana
ID: 31512310
Perfect!
0

Featured Post

Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Disabling the Directory Sync Service Account in Office 365 will stop directory synchronization from working.
This article explains the steps required to use the default Photos screensaver to display branding/corporate images
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.

830 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question