Unfortunately we did not find a way that worked for us and moved forward with the groups as they are. If you find something that works for you, I'd love to hear back. After rebooting I was then able to log on, but I got a blank screen.
So, not really sure why Authenticated Users needs to be there. Also surprised that I can log on. This gets translated correctly when the policy is applied, and we get the below:. BUT, I find can still log on with a user account that is not in the above group. To troubleshoot this, I removed "Users" from the list of groups in this policy, leaving only Administrators, Backup Operators and Guests.
I now find I can log in as an admin, but not as a regular user. Did a gpupdate and confirmed the setting as above appeared on the laptop. Confirmed I was able to log in. This made sure that we had what we needed in the Users group locally. I reset the GPO settings under local security policy back to include Users.
This was to set the Allow Log On Locally setting as it would be on a computer where this local policy was not messed with. This did not change the behaviour - I can still log on to the laptop. Sign up to join this community. The best answers are voted up and rise to the top. Stack Overflow for Teams — Collaborate and share knowledge with a private group.
Create a free Team What is Teams? Learn more. Windows groups and permissions: Authenticated Users group meaning Ask Question. Asked 8 years, 6 months ago. Active 9 months ago. Viewed 83k times. Improve this question. Excuse my ignorance, but why can't the command net know that mike also belongs to another group?
The plural in "Local Group Memberships" makes me think it should be able to see all groups to which mike belong. That's exactly my point, it should list all groups but it doesn't! My "the command net cannot know it but mike also belongs to the Authenticated Users group" is a stating of the facts under Windows 7. Show 1 more comment. Active Oldest Votes.
However, applying the same image from winpe there are no permission issues and all the appropriate groups are assigned to the root. Thank you for the continued effort, Nicholas. With the additional icacls information I will delve into the general error provided. Office Office Exchange Server.
Not an IT pro? Learn More. Resources for IT Professionals. Sign in. United States English. Ask a question. Quick access. Search related threads. Remove From My Forums. Molly Molly As a rule you should not mess with this setting. It can kill all access to your drives. I routinely remove this group and leave the Users group because my machine is not in a domain - what potential problems am I looking at?
Haven't noticed any yet. Diago, I think this warning is a little exaggerated. For example, I specifically needed to remove this permission on my user directory, to prevent other users from having access.
Sign up or log in Sign up using Google. Sign up using Facebook. Sign up using Email and Password. Post as a guest Name. Email Required, but never shown.
0コメント