Sandbox user account
I need to give somebody user account to run an application on my server. But I want to limit that account to only certain folder where the app will run. He will manage the app through remote desktop. I've other things running on the server so I don't to
give access to LAN, registry, or system drive.
Is that possible?
My OS is win2008 R2
Thanks in advance,
July 4th, 2011 5:17pm
Create a Domain Local group, add the user to this group. Add the DL group into the Remote Desktop Users group in the 2008 box.
This will allow the user to logon remotely to the RDS.
Grant the desired access to the same DL group to the folders on the server.
I suggest you create a test account and stress this just to make sure the user will not touch anything you don't want him to.
Free Windows Admin Tool Kit Click here and download it now
July 25th, 2012 2:04pm


