Securing Server Access To a Single Security Group


hello,


i trying set server access security in 2008 r2 environment. have created security group , added users need access. under impression create custom firewall rule , add group , allow them access. come find out if user not in security group, in remote desktop users group still able login machine remotely. there way lock down security group can access server? i've read little nps, i'm not sure if allow me need.


regards , in advance.

hi green-tech,

nps provide authentication, authorization , accounting services network access server (nas) , use policies limit network access of nas’s clients.

according description, want allow specific user groups access (log on) servers, , seems didn’t set nas provide network access servers. may not suitable use nps directly.

to achieve goal, maybe can use user rights assignment to manage local log on , remote logon. may use following steps open user rights assignment: run gpedit on the server, in local group policy > computer configuration, expand windows setting> security setting> local policies> user rights assignment. in policies, may find “allow log on locally” , “access computer network” , other policies, may change security setting achieve goal.  

best regards,

anne


please remember mark replies answers if , unmark them if provide no help. if have feedback technet support, contact tnmff@microsoft.com.



Windows Server  >  Network Access Protection



Comments

Popular posts from this blog

some help on Event 540

WMI Repository 4GB limit - Win 2003 Ent Question

Event ID 1302 (error 1307) DFS replication service encountered an error while writing to the debug log file