Solved

HELP!!!  I am trying to customize the installation of the RSAT for a Windows 7 Pro PC

Posted on 2010-11-29
7
374 Views
Last Modified: 2012-05-10
Hi, I am trying to customize the installation of the RSAT for a Windows 7 Pro PC.  I use to be able to use command line switches and such to install the AD admin tools for XP PCs.  I know that the delegations is controlled on the AD itself, but I would rather not have the user even see the other AD tools, like AD Sites & Services, AD Domain Trusts, etc.  All I want them to see is the AD Computers & Users.

I was wondering if there is a way to customize installation of the RSAT on a Windows 7 Pro PC.

Thanks in advance.
0
Comment
Question by:rsnellman
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 3
7 Comments
 
LVL 47

Expert Comment

by:Donald Stewart
ID: 34234531
0
 

Author Comment

by:rsnellman
ID: 34267964
Unless I am overlooking something on those links you sent, it is not installing the way I would like it to.

All I want installed is the ADUC...nothing else.  Is this possible with RSAT on Windows 7 Pro?
0
 

Author Comment

by:rsnellman
ID: 34269358
OK, I found in your link how to enable/disable using Dism command.  However, I am wondering can I turn off all the unneccessary features or do they all need to be there for ADUC.

Features in question:
RemoteServerAdministrationTools
RemoteServerAdministrationTools-Roles
RemoteServerAdministrationTools-Roles-AD
RemoteServerAdministrationTools-AD-DS
RemoteServerAdministrationTools-Roles-AD-DS-SnapIns
RemoteServerAdministrationTools-Roles-Ad-DS-AdministrativeCenter
RemoteServerAdministrationTools-Roles-AD-PowerShell

All I am looking for is giving access to certain AD OUs for certain personell.

Thanks in advance.
0
Office 365 Training for Admins - 7 Day Trial

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

 
LVL 47

Accepted Solution

by:
Donald Stewart earned 500 total points
ID: 34269521
Sorry, I havent been able to actually test this yet. But have you tried "Restrict users to the explicitly permitted list of snap-ins" ?



http://technet.microsoft.com/en-us/library/cc975962.aspx
0
 

Author Comment

by:rsnellman
ID: 34275016
No, not yet, but I have manually removed the shortcuts, .dll files and .msc files with success.

Not sure how secure that will be.
0
 

Author Comment

by:rsnellman
ID: 34284897
Ok, I believe it is working now.  Thanks to dstewartjr's link for "Restrict users...snap-ins" via GP.  And deleting the shortcuts under Administrative Tools.  I think this will work just fine.

Thanks again.
0
 
LVL 47

Expert Comment

by:Donald Stewart
ID: 34285927
Glad to get something that worked out for ya :)
0

Featured Post

Creating Instructional Tutorials  

For Any Use & On Any Platform

Contextual Guidance at the moment of need helps your employees/users adopt software o& achieve even the most complex tasks instantly. Boost knowledge retention, software adoption & employee engagement with easy solution.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article demonstrates probably the easiest way to configure domain-wide tier isolation within Active Directory. If you do not know tier isolation read https://technet.microsoft.com/en-us/windows-server-docs/security/securing-privileged-access/s…
Let's recap what we learned from yesterday's Skyport Systems webinar.
This Micro Tutorial will give you a basic overview of Windows DVD Burner through its features and interface. This will be demonstrated using Windows 7 operating system.
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …
Suggested Courses

626 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question