Coming Soon: GET:IT Endpoint Management 1-Day Conference on September 28th at 9:30 AM ET Coming Soon: GET:IT Endpoint Management 1-Day Conference on September 28th at 9:30 AM ET

Local administrator and administrator users – DMZ servers

Home Forums Server Operating Systems Windows Server 2008 / 2008 R2 Local administrator and administrator users – DMZ servers

Viewing 1 post (of 1 total)
  • Author
    Posts

  • nazirahmed
    Member
    #167590

    Dear Experts,
    I have a number of windows servers (mostly windows server 2008 ) which are placed in DMZ and are not in the active directory. We use a third-party password management solution for active directory joined servers. The idea is to use one account on each server which is NOT an administrator but has rights to change/reset the password of all other local users on the server including built-in administrator. None of the other users should have permissions to reset/change the password on the server. Any suggestion, such as, local policy, local rights, powershell scripts etc which can help achieve the desired results?
    Many thanks

Viewing 1 post (of 1 total)

You must be logged in to reply to this topic.

Live Webinar: Active Directory Security: What Needs Immediate Priority!Live on Tuesday, October 12th at 1 PM ET

Attacks on Active Directory are at an all-time high. Companies that are not taking heed are being punished, both monetarily and with loss of production.

In this webinar, you will learn:

  • How to prioritize vulnerability management
  • What attackers are leveraging to breach organizations
  • Where Active Directory security needs immediate attention
  • Overall strategy to secure your environment and keep it secured

Sponsored by: