Domain Group Policy Non Administrators
Word of warning though if you put the destination group as the group in the gpo it will empty any local memberships i e.
Domain group policy non administrators. I know we can allow rdp access on each server by adding the user to remote desktop users group and in local security policy allow logon through terminal services access. Right click on the non administrators in the list and then select remove group policy object from the menu that opens. For instance we don t want any non administrators to access certain drives on the system so hide these specified drives on my computer was changed accordingly.
I d use a serveradmins group and the restricted groups feature mentioned by mike p. See if you can get rsat installed this is the remote server administration tools and give it a try. This action will open the snap in inside the mmc.
Gpupdate force note that the group that you added to the allow log on through remote desktop services policy should not be present in the deny log. You should see all local users the administrators group and the non administrators group. In the next dialog click on the users tab and select non administrators from the list as shown below.
Depending on what you want enforced you could set the policy via regedit instead. Apply local group policy to non administrators in windows 10 page 3 of 3 first 1 2 3. Edit the policy add the domain group remote desktop users like this.
To the right you can see if a local policy object already exists for the given user or group yes or no. My computers lentilbake. Microsoft are recommending you move away from using the built in groups where possible and create your own group and assign it the rights.
In the next dialog click the browse button. Only those members defined in the policy will be. Now click the ok button.