Go Premium for a chance to win a PS4. Enter to Win

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 38
  • Last Modified:

Using Group Policy to prevent users from locking a computer

We have a server 2008 AD environment where users share workstations but login with unique accounts. It's a sales office and users are constantly logging into different computers for short sessions. This is creating a situation where computers can have over half a dozen different users logged in at the end of the day, and we believe it's causing a problem with some of our software. We are not concerned about data loss as just about everything these users do is in the cloud.

Is it possible to prevent users from locking computers as well as change the idle timeout to force a logout rather than a lock screen?
0
medium_grade
Asked:
medium_grade
  • 2
1 Solution
 
Manuel FloresCommented:
To close idle session, seems not be so easy, the session limit group policy is related to RDP sessions.

It is possible using logon scripting ;
https://4sysops.com/archives/automatically-log-off-idle-users-in-windows/

This solution uses a proprietary .exe, beware with that.

Maybe somebody knows a better solution.
0
 
FOXActive Directory/Exchange EngineerCommented:
log off after a certain period of inactivity

ref link: https://4sysops.com/archives/automatically-log-off-idle-users-in-windows/

idlelogoff download(add it to a gpo)
ref link: http://www.intelliadmin.com/?p=4439
0
 
Manuel FloresCommented:
Provided a link with a valid solution to the question.
0

Featured Post

Free learning courses: Active Directory Deep Dive

Get a firm grasp on your IT environment when you learn Active Directory best practices with Veeam! Watch all, or choose any amount, of this three-part webinar series to improve your skills. From the basics to virtualization and backup, we got you covered.

  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now