Web applications authentication and disabling user accounts from logging onto workstations


hi,

i preferably want set policy on ou contains users only. i'd prevent users logging on workstations still allow them authenticate web application.

unfortunately computer policy prevent interactive logon isn't viable can apply policy users.

ideas on policy or solution?

thanks

correct - through browser

right. when users use web browser, why want restrict access on external domain ? presume, in scenario, users using the browser and supplying their credentials log on external web service or website, don't see security risk on here.

if external domain in use other users what's stop web users logging on other domain?  nothing -  you can expect if these accounts suppose website there's no policies etc. apart default/password policies/none @ all

also passwords never expire website - they'll never able change passwords don't log in.

so you'll have people able log in workstations on domain, non-expiring passwords little-to-no policies enforced...

that sounds security risk me!



Windows Server  >  Windows Server General Forum



Comments

Popular posts from this blog

server manager error: ADAM.events.xml could not be enumerated.

Cannot access Anywhere Access using domain name?

WMI Failure: Unable to update Local Resource Group