>> No i user tom nie nalezy do security grups a przeciez jest dodany
>> jako
>> czlonek DomainUser w jednym z kontenerow domeny.
> Znaczy sie zostal dodany do grupy czy wrzucony do OU - rozumiem ze w
> Group Membership ma Domain Users
Obecnie user tom jest wrzucony do folderu M13_OU. Default domain
policy jest aplikowane do domeny oraz dodakowo ustawialem tez jeszcze
raz dla M13_OU.
Natomiast w OU Users we wlasciwosciach 'Domain Users' jest dodany jako
member 'M13.server.pl/M13_OU'.
> A nie zmieniales przypadkiem ustawien security na tej default domain
> policy ?
Zmienialem. Jak dalem dla Domain Admins Deny dla 'Apply Group Policy'
to nie blokowalo mi panelu sterownia w serwerze. Wrocilem to na
domyslne.
W ustawieniach security dodalem uzytkownika tom oraz komputer domeny
'M12ST03' z ktorego on sie loguje. Rowniez dla Domain users i Domain
Computers dalem uprawnienia: 'read' i 'apply group policy'
> A podeslij ewentualnie jeszcze gpresult /v
Oto on ze stacji roboczej:
Microsoft (R) Windows (R) 2000 Operating System Group Policy Result
tool
Copyright (C) Microsoft Corp. 1981-1999
Created on Thursday, June 24, 2004 at 2:38:03 PM
Operating System Information:
Operating System Type: Professional
Operating System Version: 5.0.2195.Service Pack 4
Terminal Server Mode: Not supported
###############################################################
User Group Policy results for:
Domain Name: M13
Domain Type: Windows 2000
Site Name: Default-First-Site-Name
Roaming profile: \\M13STS01\NETLOGON\tom
Local profile: C:\Documents and Settings\tom
The user is a member of the following security groups:
The user has the following security privileges:
Bypass traverse checking
Shut down the system
Remove computer from docking station
###############################################################
Last time Group Policy was applied: Thursday, June 24, 2004 at 2:04:31
PM
###############################################################
Computer Group Policy results for:
Domain Name: M13
Domain Type: Windows 2000
Site Name: Default-First-Site-Name
The computer is a member of the following security groups:
BUILTIN\Administrators
\Everyone
NT AUTHORITY\Authenticated Users
###############################################################
Last time Group Policy was applied: Thursday, June 24, 2004 at 2:18:01
PM
===============================================================
The computer received "Registry" settings from these GPOs:
Local Group Policy
Revision Number: 131074
Unique Name: Local Group Policy
Domain Name:
The following settings were applied from: Local Group Policy
KeyName: Software\Policies\Microsoft\SystemCertificates\EFS
ValueName: EFSBlob
ValueType: REG_BINARY
Value: Binary data. Use the /S switch to display.
KeyName:
Software\Policies\Microsoft\SystemCertificates\EFS\Certificates\DDA891
21364A78C4D833F7D321532A4DC5BF6A8B
ValueName: Blob
ValueType: REG_BINARY
Value: Binary data. Use the /S switch to display.
KeyName: Software\Policies\Microsoft\SystemCertificates\EFS\CRLs
ValueName:
ValueType: REG_NONE
Value: This key contains no values
KeyName: Software\Policies\Microsoft\SystemCertificates\EFS\CTLs
ValueName:
ValueType: REG_NONE
Value: This key contains no values
===============================================================
The computer received "EFS recovery" settings from these GPOs:
Local Group Policy
Revision Number: 131074
Unique Name: Local Group Policy
Domain Name:
Additional information is not available for this type of policy
setting.
Received on Thu Jun 24 14:55:15 2004
To archiwum zostało wygenerowane przez hypermail 2.1.8 : Thu 24 Jun 2004 - 15:42:07 MET DST