Permit or restrict access to a snap-in

Applies To: Windows Server 2003, Windows Server 2003 R2, Windows Server 2003 with SP1, Windows Server 2003 with SP2

To permit or restrict access to a snap-in

  1. Open MMC.

  2. On the File menu, click Add/Remove Snap-in, and then click Add.

  3. Under Snap-in, click Group Policy Object Editor, and then click Add.

  4. In the Select Group Policy wizard, do one of the following:

    • To edit the local Group Policy Object, leave the Group Policy Object box set to Local Computer, and then click Finish.

    • To specify a different Group Policy Object, click Browse, select the object, click OK, and then click Finish.

  5. Click Finish, click Close, and then click OK.

  6. In the console tree, click Restricted/Permitted snap-ins.

    Where?

    • PolicyName Policy/User Configuration/Administrative Templates/Microsoft Management Console/Restricted/Permitted snap-ins
  7. In the details pane, double-click the snap-in that you want to permit or restrict, and then do one of the following:

    • To enable the user to access this snap-in (unless the user is restricted by the Restrict users to the explicitly permitted list of snap-ins policy), click Not Configured.

    • To permit the user to access this snap-in, click Enabled.

    • To restrict the user from accessing this snap-in, click Disabled.

Notes

  • To open MMC, click Start, click Run, type mmc, and then click OK.

  • This feature applies only in a network where Group Policy object has been configured; a system administrator must enable Group Policy object.

  • For more information, click the Explain tab in the snap-in Properties dialog box, and see Help.

Information about functional differences

  • Your server might function differently based on the version and edition of the operating system that is installed, your account permissions, and your menu settings. For more information, see Viewing Help on the Web.

See Also

Concepts

Add a snap-in to a new MMC console for a local computer
Setting Group Policy in MMC
Restrict access to a permitted list of snap-ins
Permit or restrict access to a snap-in for a domain
Group Policy (pre-GPMC)