Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chriss Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Setting up Groups and OUs in AD.

Status
Not open for further replies.

wardog25

Technical User
Oct 24, 2003
129
US
I'm installing a brand new win2k domain (was using Novell) on my network which has about 70 users.

I'm curious about creation of groups and OUs. My biggest concern is file rights for the moment, so do I need to even bother with OUs right now? I can create departmental groups to assign rights to resources. What is the purpose of creating the same departmental OUs? Just to apply group policy? I do plan to use group policy, but like i say, at this point the far bigger concern is the correct security settings for resources.
 
Unless you plan on delegating control (unlikely with only 70 users) you probably don't need to create OUs and could manage your environment with groups alone.

You can apply any GPOs that you make to just the groups you want and set them at the domain level.

I hope you find this post helpful. Please let me know if it was.

Regards,

Mark
 
ok, that's what i wanted to know.

No, i don't plan to delegate any control.

Thanks
 
by the way. can you link a GPO to a group? I thought you could only apply them to sites, domains, or OUs.
 
You link a GPO to a site or OU, but it is applied to either Users, Groups or Computers (or groups of computers). This is configured in the Security Settings fo the GPO.

I hope you find this post helpful. Please let me know if it was.

Regards,

Mark
 
yes. ou's offer granular control. policy is applied:
Local,Site,Domain,OU.... LSDOU

scottie
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top