USERS group and NTFS permissions
In news:84635A83-B75C-4C6B-B211-E23E20C9D22B@microsoft.com,
domin <domin@discussions.microsoft.com> typed:
These are all local users/groups, right? Not domain users / groups?
I'm not 100% sure about this, but if you mean the built-in "users" group, I
don't think you can actually remove anyone from it. And a 'deny' always
trumps an 'allow' from another group.
I would set up custom groups for your security. You likely don't need
"deny" on anything, anyway - just don't add that group to the 'allowed' list
at all.
Someone may correct me; it's happened before. :-)
|