Answer the question
In order to leave comments, you need to log in
What are the ways to manage users in a workgroup?
Situation: 1 Windows Server 2008, 10 workstations Windows 7 - Windows 10. AD services are not configured, stations and server are in a workgroup. The raising of the domain is not planned.
Is there any solution for quick user management in a workgroup (here, as you know, for everything to work, it is necessary that all users be present on all machines of the workgroup at the same time), except for AD and alternatives in the form of nix + samba?
Upd.:
-What kind of management is expected? Management of what exactly?
-users and their rights to shared directories on workstations in the network. Most likely it is a sheaf of scripts/cmdlets + management through WMI
Upd. 2:
Users cannot change their passwords.
Upd. 3:
I am NOT the admin of this network. The admin from my office is constantly pulled by the local young employees to solve minor problems, mainly related to access to balls on the network.
Answer the question
In order to leave comments, you need to log in
You have already listed all existing solutions.
Here, either everyone works under the same user on all computers with the same password, or there are constant problems with user / password synchronization.
Problems can be minimized only by having the same admin access on all computers, allowing remote access, remote wmi, remote firewall control and HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\LocalAccountTokenFilterPolicy=0 to access admin balls over the network.
After that, almost everything can be done remotely, without running around the computers. But when the user changes his password, problems with connecting to the servers will immediately arise. As an option to prohibit the user from changing the password, but this is even worse.
Another option is to use the account entered in the "Credential Manager" to access the shared resources of the server. Then the user will log into the server not with his account, but with the account specified in the manager. True, after changing the user's password, the saved passwords in the manager fly off (apparently they are encrypted on the user's password), so they will need to be reset. But this can already be done remotely, because. you, as an admin, will know this password and there is a command line utility to manage it - cmdkey.
Please describe how you see the user data synchronization mechanism in case the user changes his password on his main station.
And how do you plan to solve problems with user access to shared folders in this case.
This is if you still implement your ingenious user management system through scripts / remote control.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question