olisemalis
MIS
Hello again,
I´m having some doubts about group scoope (local; global; universal) in an Avtive Directory Environment. Sorry for this kind of questions but I´m new to windows administration.
Here are some simplified questions and the answer, as well as my doubts.
# use the TestKingStaff group to assign permissions to resources in both domains.
Answer: use an universal security group
Ok, this one I understand, as the group will be used in different domains...
# You are the network administrator for hq.testking.com. The domain controllers in your domain host applications and shared folder to which users in manu.testking.com require access. Create a group that will grant the required access to users in manu.testking.com.
Answer: Domain local - Security.
Doubt: if the users are from another domain, and they want to acess my domain, shouldn´t it be a universal group?
# You are the network administrator for helsinki.testking.com. Users in your domain require access to applications and shared folders that reside on member servers in mumbai.testking.com.
Answer: "Global" - "Security" group.
Doubt: the same... from one domain to the other, users will have to acess resources on both domains, so, why not a universal group?
Thank you!
I´m having some doubts about group scoope (local; global; universal) in an Avtive Directory Environment. Sorry for this kind of questions but I´m new to windows administration.
Here are some simplified questions and the answer, as well as my doubts.
# use the TestKingStaff group to assign permissions to resources in both domains.
Answer: use an universal security group
Ok, this one I understand, as the group will be used in different domains...
# You are the network administrator for hq.testking.com. The domain controllers in your domain host applications and shared folder to which users in manu.testking.com require access. Create a group that will grant the required access to users in manu.testking.com.
Answer: Domain local - Security.
Doubt: if the users are from another domain, and they want to acess my domain, shouldn´t it be a universal group?
# You are the network administrator for helsinki.testking.com. Users in your domain require access to applications and shared folders that reside on member servers in mumbai.testking.com.
Answer: "Global" - "Security" group.
Doubt: the same... from one domain to the other, users will have to acess resources on both domains, so, why not a universal group?
Thank you!