?
Solved

difference between everyone, users and domain users in server 2008?

Posted on 2012-03-28
6
Medium Priority
?
1,004 Views
Last Modified: 2012-04-16
what's the difference between everyone, users and domain users in server 2008 domain environment? and why by default, the users is in the security group not domain users?
0
Comment
Question by:okamon
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
6 Comments
 
LVL 14

Expert Comment

by:athomsfere
ID: 37779908
Everyone is literally everyone that can hit that system.

Users are local users, and domain users are basically users, but instead of being assigned locally they are assigned by the DC / Active Directory.
0
 

Author Comment

by:okamon
ID: 37780149
Users are local users? so you mean domain users are local users? as by default, in security only has users, there is no domain users. And can you tell me why?
0
 
LVL 11

Accepted Solution

by:
Venugopal N earned 1185 total points
ID: 37780448
Every one Group:

The Everyone group includes all members of the Domain Users, Authenticated Users group as well as the built-in Guest account, and several other Built-in security identifiers like SERVICE, LOCAL_SERVICE, NETWORK_SERVICE, etc. . This is a built-in group that cannot be modified.

Users:

Members of this group can perform most common tasks, such as running applications, using local and network printers, and locking the server. By default, the Domain Users group, Authenticated Users, and Interactive are members of this group. Therefore, any user account created in the domain becomes a member of this group.

*Users group contains both the local aswelas domain users by default.

Domain Users:

This group contains all domain users. By default, any user account created in the domain becomes a member of this group automatically. This group can be used to represent all users in the domain. For example, if you want all domain users to have access to a printer, you can assign permissions for the printer to this group (or add the Domain Users group to a local group, on the print server, that has permissions for the printer).


http://technet.microsoft.com/en-us/library/cc756898(v=ws.10).aspx
0
Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

 
LVL 11

Expert Comment

by:Venugopal N
ID: 37780477
After the initial installation of the operating system, only member is the Authenticated Users group(A group that includes all users whose identities were authenticated when they logged on. Membership is controlled by the operating system) of Users group. When a computer joins a domain or promote to DC, the Domain Users group is added to the Users group on the computer.

Hence Users group will have the users which has been created while installing the OS ( Authenticated Users group ) and the Domain Users group.
0
 
LVL 11

Expert Comment

by:Venugopal N
ID: 37780479
0
 

Author Comment

by:okamon
ID: 37784072
why I asked this question is that I have a sbs2011 and the RWA include a portal where users can access the share folders. I wanted to share with external clients as well but only the folder I want to give to them. on the client's user member property, I removed eveything except the "windows sbs RWA users" group, but they still able to access share folders. I checked the share folder permission and see that the everyone if in security, I removed it and changed to "users". But they still had access. I then changed to "Domain users" this time and now they don't have access. So "windows sbs RWA users" group is part of the "Users" group as well?  I checked the "member of" property and it was blank though...
0

Featured Post

Free Tool: Path Explorer

An intuitive utility to help find the CSS path to UI elements on a webpage. These paths are used frequently in a variety of front-end development and QA automation tasks.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

After seeing many questions for JRNL_WRAP_ERROR for replication failure, I thought it would be useful to write this article.
Active Directory can easily get cluttered with unused service, user and computer accounts. In this article, I will show you the way I like to implement ADCleanup..
This tutorial will show how to configure a single USB drive with a separate folder for each day of the week. This will allow each of the backups to be kept separate preventing the previous day’s backup from being overwritten. The USB drive must be s…
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.
Suggested Courses
Course of the Month14 days, 22 hours left to enroll

771 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question