I have a smart user that has done the following. I have an NT4.0 domain, which is working very well thank God. I am migrating some of the workstations that meet the Win2k requirements. One user has done the following. He went to local security settings, local policy, User Rights Assignment and chose the ” Access this computer from Network” and removed all options from it (Everyone, Administrator, Power User, and whatever). This means that I can?t ping, manage or do whatever to him. This is good security actually, but even an administrator still must have the choice to do his job. Is there a way, rather than fighting with him to override this problem, with the help of existing NT domain. Can old group policy solve this issue?
Any help would be appreciated.