Go Back   PCMech Forums > Windows Support > Windows Legacy Support (XP and earlier)

Need Some Help? Type Your Keywords Here:

Reply
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
Old 03-11-2003, 10:44 PM   #1
Member (12 bit)
 
Paul Victorey's Avatar
 
Join Date: Mar 1999
Location: MN or WI
Posts: 3,017
XP, denying login access without disabling account?

Here's a question. I have an XP pro machine on a LAN, and I want to have user accounts so others can access shared folders remotely, without allowing them logon access to the machine locally. As far as I can tell, it's all or nothing -- either their account is enabled, allowing login and share access, or disabled, in which they can't do either.

Is it possible to allow share access with a user/pass but not login? I absolutely despise when others use my computer w/o permission, so I'd rather nobody even be able to login.
__________________
Paul M. Victorey
------------------
I am not responsible for any problems that may arise as a result of following my advice. This includes, but is not limited to, computer failure, loss of data, nuclear war, famine, boils, no clean laundry, your daughter running off with a biker gang, or armageddon. Take my advice at your own risk.
Paul Victorey is offline   Reply With Quote
Old 03-12-2003, 02:29 AM   #2
HOT ROD
 
lil Jimmie's Avatar
 
Join Date: Sep 2000
Location: On the Edge
Posts: 4,565
To do that, you would need to logon to a domain with the appropriate accounts and permissions to allow those types of shares. Without a local account there is no user authentication.
__________________
Fast enough 2 get by.....old enough 2 know what not 2 try -You know it was me
lil Jimmie is offline   Reply With Quote
Old 03-12-2003, 03:04 PM   #3
Member (9 bit)
 
Join Date: Jul 2001
Location: North West England
Posts: 410
Create an account on your machine with a username that matches the username on the users own machine. Whilst you are creating the accounts have the users set the password to match that of their own machine.

Once all the accounts are created click Start | Run and type "secpol.msc" without the quotes. This should open up the Local Security Policy. Expand Local Policy and click on User Rights Assignment.

In the right hand window double click on "Deny logon locally" and add your users as necessary.

The above is for Windows 2000 Pro. I am sure that the process will be very similar for XP.
pointd is offline   Reply With Quote
Old 03-13-2003, 01:47 AM   #4
KHT
Member (9 bit)
 
Join Date: Oct 1999
Posts: 406
If you are on a domain, users can log onto any machine and overide local settings. However, the admin can specify what machines users can\cannot log onto but would have to type in every machine for every user in active directory individually, eliminiating yours which would then deny access.

And this will only work if Netbios over TCP\IP is enabled at the server. (most likely is)
KHT is offline   Reply With Quote
Reply

Bookmarks

Still Need Help? Type Your Keywords Here:


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -5. The time now is 11:40 PM.
Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.
SEO by vBSEO 3.6.0 PL2