Terminal Server Group Policies
Author
Discussion

nekrum

Original Poster:

588 posts

307 months

Saturday 8th January 2005
quotequote all
Hi All

We have a Windows 2003 terminal server configured with a log down group policy to which most users connect to using Wyse Terminals.There are a few a couple of users who connect to the nwtwork using laptops and use terminal client software.

The problem is the group policy is also locking down the laptops when the user logs onto the network and thus stopping them accessing local programs / files etc. Is it possible to only apply the group policy the the user when they log onto the terminal server and not the network as a whole?

Thanks in advance...

agent006

12,058 posts

294 months

Saturday 8th January 2005
quotequote all
It's possible to do it per user but i'm not sure on per computer basis.
I've done ours by denying read permissions to the policy for everyone i want to get full access to the server.

EDIT:

I've just read that properly. Stick your terminal servers in a separate AD OU and only apply the lock down policy to that OU. This will lock down every domain user that logs onto the server, but only for that server, unless you bodge it as mentioned above.

>> Edited by agent006 on Saturday 8th January 15:09