Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

join computers to AD domain

Posted on 2011-09-30
5
Medium Priority
?
473 Views
Last Modified: 2012-05-12
Per Microsoft a domain user can join 10 computers to the domain.
I wonder if I had 20 domain users. would each of them be able to join 10 computers to the domain?

Thanks
0
Comment
Question by:jskfan
5 Comments
 
LVL 57

Accepted Solution

by:
Mike Kline earned 668 total points
ID: 36892444
By default yes, and that can be changed    http://blogs.technet.com/b/jhoward/archive/2005/04/18/403817.aspx?wa=wsignin1.0

Thanks

Mike
0
 
LVL 4

Assisted Solution

by:Subnet_This
Subnet_This earned 668 total points
ID: 36892454
Here area  a few options you can do:
http://support.microsoft.com/kb/251335
0
 
LVL 39

Assisted Solution

by:Krzysztof Pytko
Krzysztof Pytko earned 664 total points
ID: 36892644
If you want to prevent them of adding workstations to the domain (to secure your environment), you can modify Deafult Domain Controller policy.
Under Computer Configuration -> Policies -> Windows Settings -> Security Settings -> Local Policies -> User Rights Assignment
from "Add workstations to domain" policy, you can remove "Authenticated Users" group. Then regular users won't be able to add any workstation to the domain

Regards,
Krzysztof
0
 
LVL 39

Expert Comment

by:Krzysztof Pytko
ID: 36892655
and of course put there "Domain Admins" instead of them :)

Krzysztof
0
 

Author Closing Comment

by:jskfan
ID: 36895783
excellent
0

Featured Post

Free Tool: Port Scanner

Check which ports are open to the outside world. Helps make sure that your firewall rules are working as intended.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This process allows computer passwords to be managed and secured without using LAPS. This is an improvement on an existing process, enhanced to store password encrypted, instead of clear-text files within SQL
A bad practice commonly found during an account life cycle is to set its password to an initial, insecure password. The Password Reset Tool was developed to make the password reset process easier and more secure.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

824 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question