?
Solved

blocking logon if domain controller is offline

Posted on 2009-04-17
1
Medium Priority
?
276 Views
Last Modified: 2012-05-06
is it possible with a local policy or something to make it so if the domain controller cannot be found when the client trys to log on from his pc the active directory user accont wont login?
0
Comment
Question by:pjmcc
1 Comment
 
LVL 5

Accepted Solution

by:
RightNL earned 2000 total points
ID: 24165933
yes
you can simply set this using GPO or local Security Policies.
gpo1 under computer configuration > windows settings > security settings > local policies > security options
set " Interactive logon: number of previous logons to cache"  => 0
gpo2 under computer configuration > administrative templates > system > Logon
set the value for " Always wait for the Network at computer startup and logon" to enable
You can also use roaming profiles and disable logon if the profile isn't loaded from the server.. but that wouldn't give you all the security..
 
there's a lot more nice settings there ;)
0

Featured Post

Nothing ever in the clear!

This technical paper will help you implement VMware’s VM encryption as well as implement Veeam encryption which together will achieve the nothing ever in the clear goal. If a bad guy steals VMs, backups or traffic they get nothing.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

ADCs have gained traction within the last decade, largely due to increased demand for legacy load balancing appliances to handle more advanced application delivery requirements and improve application performance.
The recent Microsoft changes on update philosophy for Windows pre-10 and their impact on existing WSUS implementations.
This tutorial will give a short introduction and overview of Backup Exec 2012 and how to navigate and perform basic functions. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as conne…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
Suggested Courses

862 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question