Discussion:
Limit connection by machine
(too old to reply)
GLasky
2005-02-04 14:45:01 UTC
Permalink
Is it possible to prevent certain servers from allowing a specific user to
connect via terminal services for remote admin, while still allowing the user
to connect to other servers within the same domain. This user happens to be a
member of the domain admins group as well.
Vera Noest [MVP]
2005-02-04 14:52:29 UTC
Permalink
You can make it a bit more difficult, but you cannot prevent access,
as long as the user is Domain Administrator.
You can modify the rdp-tcp permissions on the servers, and set
"Deny" for this user.
But since he is DA, he will be able to change his permissions back.

--
Vera Noest
MCSE,CCEA, Microsoft MVP - Terminal Server
http://hem.fyristorg.com/vera/IT
*----------- Please reply in newsgroup -------------*
Post by GLasky
Is it possible to prevent certain servers from allowing a
specific user to connect via terminal services for remote admin,
while still allowing the user to connect to other servers within
the same domain. This user happens to be a member of the domain
admins group as well.
Loading...