Hi All

I need some assistance, I would like to setup an OU named Local admins. In the OU I would like to create groups each group will be named example "L1155-localadministrator" "D2434-LocalAdminstrator etc... and in those groups a user or users of a specific machine will be in it and they will have local admin rights to that specific machine. I found a blog that gave instructions on doing this using group policy Computer configuration\Policies\Windows Settings\Security Settings\Restricted Groups.

But that is not what i am after as i want the groups in my OU to be specific for the machine and user. really desperate here any help would greatly be appreciated. 
0 Comments   [ - ] Hide Comments


Please log in to comment

Answer this question or Comment on this question for clarity



Please log in to comment
This content is currently hidden from public view.
Reason: Removed by member request
For more information, visit our FAQ's.

Hi All

this link is amazing and found the answer here http://www.grouppolicy.biz/2010/01/how-to-use-group-policy-preferences-to-secure-local-administrator-groups/ 

hopefully it helps anyone else that is having the same issue
Answered 06/20/2017 by: rich piano
White Belt

  • Thank you the article is very informative. I've used the restricted groups setting and it is difficult to manage. I will try the GPP method.
    • Hi now i have another issue. I would like to setup an account for all my machines. this account should not be created as a domain account but rather a local machine account but pushed via group policy is that something i can do? Would greatly appreciate any help
Please log in to comment