Problem solve Get help with specific problems with your technologies, process and projects.

Preventing domain users from accessing every server on the network

Windows network security expert Wes Noonan explains how to block an individual domain user from accessing every server on a network.

How can I prevent a domain user or computer from accessing all servers on the network? I only want them to be able to access one server.
One effective method of doing this would be to add the user to a group that you create (for example Server A Users) and then remove them from the domain users group. Next, make the group that you created a member of the appropriate local groups on the server to grant them the level of access you desire. For example, if you want them to be just a regular user, you can add the global group to the local "Users" group.

View questions and answers from all of our Windows security experts here.

Dig Deeper on Windows applications

Start the conversation

Send me notifications when other members comment.

Please create a username to comment.