使服务不可阻挡,//使用没有域的gpmc.msc。 [英] Making a service unstoppable, // Using gpmc.msc without a domain.

查看:73
本文介绍了使服务不可阻挡,//使用没有域的gpmc.msc。的处理方法,对大家解决问题具有一定的参考价值,需要的朋友们下面随着小编来一起学习吧!

问题描述

我的表弟是cibercafe(主要面向网络游戏)的拥有者,拥有近30台电脑。我们使用NetLimiter 3来控制每台计算机的带宽,但问题是,有些用户知道如何停止服务。我们使用2个管理员帐户,是的,公共帐户需要是管理员,因为有些游戏有问题,如果没有。到目前为止我发现的唯一真正的答案是使用带有RSAT的GPO,但每当我尝试使用它时,它表示我需要连接到域(我们没有)。



1.有没有办法让流程不可阻挡?

2.有没有办法限制公共管理员权限超过服务?

3.如何在不失败的情况下创建域名?



先谢谢你的社区。



编辑。如果我可以让gmpc.msc工作,我不介意配置每台PC。

检查:http://social.technet.microsoft.com/Forums/windowsserver/en-US/ 2758d69a-60e8-4a5b-83dd-fc7d8e15bdc1 / prevent-users-off-a-a-service-with-a -popo



有没有办法创建另一个服务与nlsvc(NetLimiter服务)一起工作?我的意思是,如果主服务停止,那么辅助服务会检查它并重新激活它,就像那样。

Hi, my cousin is the owner of a cibercafe (mostly oriented to online games) with almost 30 PCs. We use NetLimiter 3 to control the bandwidth of each computer, but the problem is, some users know how to stop the service. We use 2 administrator accounts, and yeah, the "public" account needs to be an admin because some games have problems if not. The only real answer i've found so far is to use GPOs with the RSAT, but everytime i try to use it, it says that i need to connect to a domain (which we don't have).

1. Is there a way to make a process unstoppable?
2. Is there a way to restrict the "public" admin rights over services?
3. How can i create a domain without failing in the process?

Thank you in advance community.

Edit. If i can get gmpc.msc to work, i don't mind configuring each PC.
Check this: http://social.technet.microsoft.com/Forums/windowsserver/en-US/2758d69a-60e8-4a5b-83dd-fc7d8e15bdc1/preventing-users-from-stopping-a-particular-service-with-a-gpo

Is there a way to create another service to work together with nlsvc(NetLimiter service)? I mean, if the main service is stopped, then the secondary services check it and reactivated it again, something like that.

推荐答案

你可以使用本地组策略(和本地安全策略)编辑( http://www.sevenforums.com/tutorials/ 7357-local-security-policy-editor-open.html [ ^ ])实现大致相同的结果。在您的情况下,用户权利分配 [ ^ ]部分是关键。

您必须单独管理权限两个帐户之间。您必须进行非常精细的调整,因为如果您使本地管理员帐户受限制,您可以使系统无法使用。



您还可以考虑使用Linux系统作为域控制器: https://wiki.archlinux.org/index.php/Samba_4_Active_Directory_Domain_Controller [ ^ ]
You can use Local Group Policy (and Local Security Policy) editors (http://www.sevenforums.com/tutorials/7357-local-security-policy-editor-open.html[^]) to achieve much the same results. In your case the User Rights Assignment[^] section is the key.
You have to separate administrative privileges between two accounts. You have to do a really fine tuning, because you can make the system unusable if you get the local Administrator account restricted.

What you also can consider is using a Linux system as Domain Controller: https://wiki.archlinux.org/index.php/Samba_4_Active_Directory_Domain_Controller[^]


这篇关于使服务不可阻挡,//使用没有域的gpmc.msc。的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持IT屋!

查看全文
登录 关闭
扫码关注1秒登录
发送“验证码”获取 | 15天全站免登陆