Windows 7 / Networking

Restricting Computer Access

By default, users can log on to any computer in the domain except for domain controllers. This can be modified for individual accounts by clicking the Log On To button in the user Properties screen. If you enable this feature and add computers, users will be able to log on only to the added computers and no others.

It is also possible to prevent users from logging on to member servers (nondomain controllers) in the domain. Group Policy objects (GPOs) can be created and applied to ensure that only specific groups (such as IT administrators) are authorized to log on to servers. This provides an added layer of security for the servers.

[Previous] [Contents] [Next]