Can anyone tell me the best way to give local admin rights to all users in the domain with Windows XP and 2003 AD? I checked that I can use the Restricted groups feature in group policy. However, I dont know how to do this? Can I simply add Domain users group to local Admin group? When this is done, then they can access each other's machin using C$. Will I be able to give them rights but prevent accessing the C$, or is there any other method to do this? Thanks.
Bookmarks