Some users in my domain have access to a terminal server and others do not. When users with this privilege logon to the domain from a workstation, the group policy locks down the workstation as it would a terminal server session. Is there any way to keep a lockdown on all terminal server sessions but implement a different policy for terminal server users who also logon to the domain from a workstation?
0 Comments   [ + ] Show Comments


Please log in to comment

Rating comments in this legacy AppDeploy message board thread won't reorder them,
so that the conversation will remain readable.


assign the GPO to the TSservers and not the users .
and then hit "GPO policy loopback mode" and the users will only get that gpo when they are logging on the the TSservers .

Im running a small citrixfarm with seven servers and usually aroudn 140 ppl on it using this way .

This works only for a 2003 AD env.
Answered 02/25/2005 by: Wize
Yellow Belt

Please log in to comment
Answer this question or Comment on this question for clarity