Removeing delete/move/rename permissions for users through Group Policy object editor in server 2003 Active Directory.

Hi

We are setting up anew policy to restict users in a certain group folder in ADS Called Network users Policy on a MS server 2003.

Is it possible to restrict users ability to move/rename and delete files and folders via ADS on the server?  If so what steps do we need to take.

Many thanks.
hotline100Asked:
Who is Participating?
 
brewstermCommented:
You just need to setup folder permissions.  ADS is only going to hide or show certain folders.

Also keep in mine that some programs delete the original file before saving the new copy they are working on.  So if you have delete denied but modify allowed some applications will still not work.
0
 
Krzysztof PytkoSenior Active Directory EngineerCommented:
Have you tried with

Computer Configuration -> Windows Settings -> Security Settings -> File System

add there drive/folder/file and set up appropriate permissions and link that GPO to approrpiate computers OU. But remember that you have to be sure that other applications doesn't require read or write/modify permissions on a regular user account to work properly.

Regards,
Krzysztof
0
 
hotline100Author Commented:
Thanks Guys will have a look at this today.
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.