We are having problems when allowing multiple users to access applications on a shared workstation. The inherited Creator Owner permissions only allow write/change access to the Creator Owner (ie: SMS or a.n.other user/group account) and only read access to other users/groups
My question is
Does anyone have experience of removing the Creator Owner Group at the System Root (C: Drive) and what are the implications (if any)
Obviously there is a security implication, but in our opinion this would be resolved through proper group policy configuration
Any thoughts or experiences would be much appreciated
Regard
Simon.
|