Skip to main content

Server Administration 2012 Lab-11 Changing Allow Logon Locally Policy

1. Log in as Administratorto theDomain Controller, click Press Windows Key to go to Start, select Group Policy Management.
2. Expand ForestExpand DomainsExpand Microsoft.comExpand Domain ControllersRight click Default Domain Controller Policy and select Edit.
3. Expand Computer ConfigurationExpand PoliciesExpand Windows SettingsExpand Security SettingsExpand Local PoliciesSelect User Rights Assignment Double click Allow logon locally.
4. Click Add User or GroupClick BrowseEnter the UsernameClick OK.
5. Click OKOKApply and OK.
6. Go to Start, type Run Type Control Panel in Search Apps, and select Run, type GPUPDATE and it refreshes the policy changes.

Verification:
1. Log on to Domain Controller as Domain User (User 1)

Comments

Popular posts from this blog

Server Administration 2012 Lab-8 Creating Domain User Accounts

1. Log in as Administrator to the Domain Controller . 2. Press Windows Key to go to Start, select Active Directory User and Computers. 3. In the console tree, expand your domain MICROSOFT.COM , and then right click Users Container, select New User. 4. Specify the First name and User Logon name and then click Next . 5. Enter the Password and Confirm Password for the User account, click Next . 6. Review the configuration settings for the User Account and then click Finish. Verification: 1. Login as User ( User1@Microsoft.com ) in Member Server or Client.

Server Administration 2012 Lab-38 Applying Folder Redirection

1. Go to DC, create a Shared Folder (Folder Redirection) with everyone Co-Owner. 2. Press Windows Key to go to Start, select Group Policy Management. 3. Right click OU (Sales)Select Create a GPO... 4. Enter name (Ex: Folder Redirection) and click OK. 5. Right Click created GPO, select Edit. 6. Expand User configuration PoliciesWindows SettingsFolder Redirection  Select Desktop Right click Desktop Select Properties 7. Select Basic Redirection, select Create a folder for each user under the root path, click Browseselect the shared folder from Network,\\SYS1\Folder Redirection, click Apply and OK. Verification: 1. Login as user (S1) in client system. 2. Create a folder on desktop, Right Clickon the folder properties and check the path, it should show Network path (\\SYS1\FolderRedirection\S1\Desktop).

Server Administration 2012 Lab-10 Enabling Account Lockout policy

1. Log on to D.C as Administrator, click Press Windows Key to go to Start, select Group Policy Management. 2. Expand ForestExpand DomainsExpand Microsoft.comright click Default Domain policy and select Edit. 3. Expand Computer ConfigurationExpand PoliciesExpand WindowsSettings Expand Security SettingsExpand Account PoliciesOpen Account Lockout Policy. 4. Double click, Account lockout threshold. 5. Enter the Value for Number of invalid logon attempts(Ex: 2) 6. Set the Account lockout duration and clickOK. 7. Close the Group Policy Management Window. Verification: 1. Enter the password for user (User1) wrongly for 2 times while logging in and the user account will be locked. Unlocking the locked User accountManually 1. Log on to D.C as Administrator, click Start  Programs Administrative Tools Active Directory Users and Computers. 2. Right click the User (User1) and select Properties. 3. Check the box Unlock account click Apply and OK. Verification: 1. Log in a...