Difference between revisions of "Active Directory/Special Groups"
Jump to navigation
Jump to search
| Line 1: | Line 1: | ||
| + | The WOLFTECH domain has a number of special groups to apply security policies and provide access to resources. This document explains the function of these groups and their intended memberships. | ||
| + | |||
| + | ==Top Level Groups== | ||
| + | |||
<table> | <table> | ||
<tr> | <tr> | ||
| Line 36: | Line 40: | ||
</tr> | </tr> | ||
</table> | </table> | ||
| + | |||
| + | ==ECE Departmental Groups== | ||
| + | The following special groups are used in the ECE departmental OU. This is provided as a suggestion to other departments. | ||
| + | |||
| + | <table> | ||
| + | <tr> | ||
| + | <th>Group Name</th> | ||
| + | <th>Description</th> | ||
| + | </tr> | ||
| + | <tr> | ||
| + | <td width=200 valign=top>ECE-ACS Users</td> | ||
| + | <td></td> | ||
| + | </tr> | ||
| + | <tr> | ||
| + | <td valign=top>ECE-Allow RIS</td> | ||
| + | <td></td> | ||
| + | </tr> | ||
| + | <tr> | ||
| + | <td valign=top>ECE-Computer Admins</td> | ||
| + | <td></td> | ||
| + | </tr> | ||
| + | <tr> | ||
| + | <td valign=top>ECE-Computers</td> | ||
| + | <td></td> | ||
| + | </tr> | ||
| + | <tr> | ||
| + | <td valign=top>ECE-Desktops</td> | ||
| + | <td></td> | ||
| + | </tr> | ||
| + | <tr> | ||
| + | <td valign=top>ECE-Enable Remote Assistance</td> | ||
| + | <td></td> | ||
| + | </tr> | ||
| + | <tr> | ||
| + | <td valign=top>ECE-Enable Remote Desktop</td> | ||
| + | <td></td> | ||
| + | </tr> | ||
| + | <tr> | ||
| + | <td valign=top>ECE-Laptops</td> | ||
| + | <td></td> | ||
| + | </tr> | ||
| + | <tr> | ||
| + | <td valign=top>ECE-OU Admins</td> | ||
| + | <td></td> | ||
| + | </tr> | ||
| + | <tr> | ||
| + | <td valign=top>ECE-Users</td> | ||
| + | <td></td> | ||
| + | </tr> | ||
Revision as of 16:08, 27 June 2006
The WOLFTECH domain has a number of special groups to apply security policies and provide access to resources. This document explains the function of these groups and their intended memberships.
Top Level Groups
| Group Name | Description |
|---|---|
| NCSU-ACS Users | This group is given Read access to the ACS Q Drive on the ACS domain. A GPO (NCSU-ACS Users) is linked at the People OU and is filtered to this group to automatically mount the Q drive. Only staff who need access to the ACS Q Drive should be members of this group. |
| NCSU-Allow RIS | A GPO (Domain-Allow RIS) is linked to the domain root and filtered to this group to allow members of this group to use RIS to reinstall computers. Members of NCSU-Departmental OU Admins are a member of this group. |
| NCSU-Computers | All computers under the NCSU OU are a member of this group. |
| NCSU-Departmental OU Admins | All OU admins are a member of this group. Members of this group are delegated Read access to all group policy objects. |
| NCSU-Desktops | All desktop computers under the NCSU OU are a member of this group. |
| NCSU-Laptops | All laptop computers under the NCSU OU are a member of this group. A GPO (Domain-Laptop Policy) is linked at the domain root and filtered to this group to set laptop specific policies. |
| NCSU-Software Packagers | Members of this group have Full access to the NCSU software packages share (\\wolftech\files\common\ncsu\packages) |
| NCSU-User Account Managers | Members of this group have Full access to the People OU. Once user account creation scripting is completed, this group will be retired. |
ECE Departmental Groups
The following special groups are used in the ECE departmental OU. This is provided as a suggestion to other departments.
| Group Name | Description |
|---|---|
| ECE-ACS Users | |
| ECE-Allow RIS | |
| ECE-Computer Admins | |
| ECE-Computers | |
| ECE-Desktops | |
| ECE-Enable Remote Assistance | |
| ECE-Enable Remote Desktop | |
| ECE-Laptops | |
| ECE-OU Admins | |
| ECE-Users |