This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Assign SEC Policy to Active Directory Security Group?

Hi,

I have tried searching the documentation as well as searching on the forums and the internet and wanted to know if it is possible to assign a Device Control Policy to an AD security Group?

For example I have groups synced to AD OUs and these are per department, and want some staff (managers) to have USB access, but not everyone.

These managers happen to already be in an AD Sec Group so I would like to use that, rather than having to create a SUB group / OU for allowed USB access.

Is that possible?

Many thanks,

Scott.

:37281


This thread was automatically locked due to age.
Parents
  • Hello Scott,

    SEC only syncs the OU structure and the computer objects within, it doesn't use other information from AD. In addition policies are assigned to SEC groups (and indirectly to the computers belonging to them), "user" doesn't exist at all.

    This is as it is now. It might change but personally I don't think this will happen really soon.

    Christian

    :37283
  • any Update for this ? I have the same Problem, i want to create some AD-Groups with Computerobjects. For this Groups i wanted to assign a Policy... (v 5.3.1)

Reply Children