Five immediately implemented Windows Group Policy options

Source: Internet
Author: User
Tags configuration settings odbc odbc connection requires

A new Group Policy option (GPPS) is added to the Windows Server 2008 feature collection. In such an article, it may not be necessary to explain what GPPs is and how they work, but it is important that the "optional (if you want to do this)" Configuration project actually helps the Windows domain solve the problem.

With that in mind, let's take a look at the five Group Policy options that must be implemented. Once you understand what they can do, you will surely find that they are perfect for your environment.

User Configuration | Internet settings

The first setting is probably one of the most painful set of settings so far. Based on its original interface and complete success requires customers to actually keep the settings you want, and configuring the internal settings of Internet Explorer (IE) through traditional Group Policy has always been a nightmare.

The problem with earlier Internet Explorer Maintenance consoles revolved around the limitations of traditional Group policy itself. Using the tool to configure IE settings allows you to import customer settings from a prototype (the machine that is running the console)-there really isn't anything else. This intricate interface often forces administrators to inadvertently make changes when they simply try to see what settings are configured.

The operation of the actual IE property screen, based on the version you want to configure, makes the configuration settings for the Group Policy option (GPPS) more logical. In addition, GPPS can make some optional selections while keeping some options as necessary. They also have accurate and easy-to-use positioning capabilities to ensure that you send the correct settings to the appropriate computer.

User Configuration | Drive mapping

In an environment where there is no support for Group Policy options, the most important reason for retaining logon scripts is the need for drive mappings. Users are accustomed to H: As the main driver, S: As a shared driver (or any other name you remember). When they change the computer, they need to reset the drive name, which makes them very frustrated.

Using the driver mapping GPP under User Configuration, you can ensure that the target drives are mapped to user collections based on who they are instead of where they are. This is a great improvement for traditional logon scripts that require handwriting and are specific to a particular machine.

Further, Group Policy options can not only create and manage drive mappings, but can also be removed when you are finished working or need to make changes. With GPPs, you can simply reconfigure the resource under the drive map by modifying it. Because of the low latency of Group Policy processing, your users will have a solution that accesses the data they need almost seamlessly.

Computer Configuration | Service

Another enhanced tool for managing services and their startup mode, account, and recovery options is found under the computer configuration.

If you have a security policy or a compatibility rule that requires special management of the service (who does not need to do so today?), you will find that the service GPP significantly increases the assurance that the service is properly configured. This Group Policy option has a properties dialog box that renders well-known services within the domain, provides an area for configuration, and, like all CPPS, can be set to optional or required configurations as well as very specific tasks.

In addition, if your auditor needs to see the verifiable evidence that you correctly configure the service, you can use your CPP settings themselves to see exactly what services are locked down and why the Deep XP system downloads.

Computer Configuration | Local Users and Groups

In almost every IT environment, there is a need to move customers and groups to a local user and group console for management. Although each user or his/her computer has individual requirements, almost every environment wants to add a local it global group to the Administrators group to ensure that non-domain technicians can access the desktop.

It's always hard to do this with other tools. Many environments are obsessed with the issue of adding group tasks to their reference image or build process while out. Some smarter solutions use scripting to solve problems.

By using Group Policy options labeled to the local computer, you can now use a simple screen to add the correct users and groups to the target computer. With this console, you only need to add the group names and their members, and then set the appropriate computer permissions for GPP. You can then get the access you need and make sure it exists in the long run.

User Configuration | Data source

Finally, configuring the data source for the database-driven application is a perennial ailment. Even the toughest IT pros sometimes scratch their scalp when they recall how to properly set up a computer's ODBC connection. But why worry about individual configurations when you can create an ODBC connection at a time and provide it to users who need it?

This configuration may be accompanied by a user-configured data source. Using this console, you may be able to create an ODBC connection, its DSN, drivers, properties, and login information, and immediately mark the person who needs to connect to the application you are using. If your style is to operate a large machine, you can also use the data source as a Group Policy option under the Computer Configuration.

These five GPPs can be your start, but they are only a small part of the centralized configuration that Group Policy options can provide ... There's no price to pay! In my next article, I'll take a step further through the details of the task GPP. You'll find that planning activities using this console (and a little instruction) are very easy.

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.