Difference between revisions of "Active Directory/Special Groups"
		
		
		
		
		
		Jump to navigation
		Jump to search
		
				
		
		
	
| Line 1: | Line 1: | ||
| + | The WOLFTECH domain has a number of special groups to apply security policies and provide access to resources.  This document explains the function of these groups and their intended memberships.  | ||
| + | |||
| + | ==Top Level Groups==  | ||
| + | |||
<table>  | <table>  | ||
<tr>  | <tr>  | ||
| Line 36: | Line 40: | ||
</tr>  | </tr>  | ||
</table>  | </table>  | ||
| + | |||
| + | ==ECE Departmental Groups==  | ||
| + | The following special groups are used in the ECE departmental OU.  This is provided as a suggestion to other departments.  | ||
| + | |||
| + | <table>  | ||
| + | <tr>  | ||
| + | <th>Group Name</th>  | ||
| + | <th>Description</th>  | ||
| + | </tr>  | ||
| + | <tr>  | ||
| + | <td width=200 valign=top>ECE-ACS Users</td>  | ||
| + | <td></td>  | ||
| + | </tr>  | ||
| + | <tr>  | ||
| + | <td valign=top>ECE-Allow RIS</td>  | ||
| + | <td></td>  | ||
| + | </tr>  | ||
| + | <tr>  | ||
| + | <td valign=top>ECE-Computer Admins</td>  | ||
| + | <td></td>  | ||
| + | </tr>  | ||
| + | <tr>  | ||
| + | <td valign=top>ECE-Computers</td>  | ||
| + | <td></td>  | ||
| + | </tr>  | ||
| + | <tr>  | ||
| + | <td valign=top>ECE-Desktops</td>  | ||
| + | <td></td>  | ||
| + | </tr>  | ||
| + | <tr>  | ||
| + | <td valign=top>ECE-Enable Remote Assistance</td>  | ||
| + | <td></td>  | ||
| + | </tr>  | ||
| + | <tr>  | ||
| + | <td valign=top>ECE-Enable Remote Desktop</td>  | ||
| + | <td></td>  | ||
| + | </tr>  | ||
| + | <tr>  | ||
| + | <td valign=top>ECE-Laptops</td>  | ||
| + | <td></td>  | ||
| + | </tr>  | ||
| + | <tr>  | ||
| + | <td valign=top>ECE-OU Admins</td>  | ||
| + | <td></td>  | ||
| + | </tr>  | ||
| + | <tr>  | ||
| + | <td valign=top>ECE-Users</td>  | ||
| + | <td></td>  | ||
| + | </tr>  | ||
Revision as of 16:08, 27 June 2006
The WOLFTECH domain has a number of special groups to apply security policies and provide access to resources. This document explains the function of these groups and their intended memberships.
Top Level Groups
| Group Name | Description | 
|---|---|
| NCSU-ACS Users | This group is given Read access to the ACS Q Drive on the ACS domain. A GPO (NCSU-ACS Users) is linked at the People OU and is filtered to this group to automatically mount the Q drive. Only staff who need access to the ACS Q Drive should be members of this group. | 
| NCSU-Allow RIS | A GPO (Domain-Allow RIS) is linked to the domain root and filtered to this group to allow members of this group to use RIS to reinstall computers. Members of NCSU-Departmental OU Admins are a member of this group. | 
| NCSU-Computers | All computers under the NCSU OU are a member of this group. | 
| NCSU-Departmental OU Admins | All OU admins are a member of this group. Members of this group are delegated Read access to all group policy objects. | 
| NCSU-Desktops | All desktop computers under the NCSU OU are a member of this group. | 
| NCSU-Laptops | All laptop computers under the NCSU OU are a member of this group. A GPO (Domain-Laptop Policy) is linked at the domain root and filtered to this group to set laptop specific policies. | 
| NCSU-Software Packagers | Members of this group have Full access to the NCSU software packages share (\\wolftech\files\common\ncsu\packages) | 
| NCSU-User Account Managers | Members of this group have Full access to the People OU. Once user account creation scripting is completed, this group will be retired. | 
ECE Departmental Groups
The following special groups are used in the ECE departmental OU. This is provided as a suggestion to other departments.
| Group Name | Description | 
|---|---|
| ECE-ACS Users | |
| ECE-Allow RIS | |
| ECE-Computer Admins | |
| ECE-Computers | |
| ECE-Desktops | |
| ECE-Enable Remote Assistance | |
| ECE-Enable Remote Desktop | |
| ECE-Laptops | |
| ECE-OU Admins | |
| ECE-Users |