Solved

Re-use local security polcy in Server 2008 R2

Posted on 2011-09-19
6
370 Views
Last Modified: 2012-06-27
I am using MMC to configure local security policy on a standalone Server 2008 R2 machine.  I am using to do security hardening. Once done and tested on one server, I need to apply to a few more. These are not on domain.  Do just import the finished .msc file on the other servers?

Thanks.
0
Comment
Question by:banjo1960
  • 3
  • 3
6 Comments
 
LVL 14

Expert Comment

by:setasoujiro
ID: 36560135
0
 
LVL 1

Author Comment

by:banjo1960
ID: 36561808
Thanks for the quick response. So I just take the entries found in the Local Group Policy Object which are stored in the %Systemroot%\System32\GroupPolicy folder and copy them to the other machines that should be configured the same?  I plan to test this on a test server first.

Am I correct in assuming that the MMC snap-in for local policy is just used to view the settings and make changes?  The files used to make the changes on other machine will be those described above?

Thanks.
0
 
LVL 14

Expert Comment

by:setasoujiro
ID: 36562959
yes you should be able to do this, given they are all in a domain etc.
and for the MMC yes , it is just a layout that you save, not the content.
0
Why are Office 365 signatures so complicated?

Trying to setup transport rules for Office 365 email signatures and can’t quite figure it out? Having to test the signature over and over? Make things simple by using Exclaimer Cloud - Signatures for Office 365.

 
LVL 1

Author Comment

by:banjo1960
ID: 36563056
Thanks for the response.  I just have a coupl of more questions.

I read one of the links you sent to me a bit closer and checked another post, as well.  I see the registry.pol file under the machine folder being updated on the machine I am making changes on.

So I can copy that registry.pol to the machine I want to apply those changes to and those registry settings will be change?

Thanks.
0
 
LVL 14

Accepted Solution

by:
setasoujiro earned 250 total points
ID: 36564931
Yeah that's the 'policy' file. so copy that and see if it works , but just do it on a testserver anyhow to see the outcom, because i've not done this myself :)
0
 
LVL 1

Author Closing Comment

by:banjo1960
ID: 36566619
Thanks for the help!
0

Featured Post

Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

To effectively work with Diskpart on a Server Core, it is necessary to write some small batch script's, because you can't execute diskpart in a remote powershell session. To get startet, place the Diskpart batch script's into a share on your loca…
I was supporting a handful of Windows 2008 (non-R2) 2 node clusters with shared quorum disks. Some had SQL 2008 installed and some were just a vendor application that we supported. For the purposes of this article it doesn’t really matter which so w…
To efficiently enable the rotation of USB drives for backups, storage pools need to be created. This way no matter which USB drive is installed, the backups will successfully write without any administrative intervention. Multiple USB devices need t…
This tutorial will show how to configure a new Backup Exec 2012 server and move an existing database to that server with the use of the BEUtility. Install Backup Exec 2012 on the new server and apply all of the latest hotfixes and service packs. The…

929 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now