Apply a security template to local policy

Applies To: Windows Server 2003, Windows Server 2003 R2, Windows Server 2003 with SP1, Windows Server 2003 with SP2

To apply a security template to local policy

  1. Open Security Configuration and Analysis.

  2. In the console tree, right-click Security Configuration and Analysis, and then click Open Database.

    Where?

    • ConsoleRoot/Security Configuration and Analysis
  3. In File name, type a file name and then click Open.

  4. (Optional) If you are creating a new policy, in Import Template, do one of the following:

    • To clear the database of any previously imported templates, select the Clear this database before importing check box.

    • To append this template to any previously imported templates, confirm that the Clear this database before importing check box is cleared. (The last template that was imported has precedence over any conflicting values.)

  5. In Import Template, click a template, and then click Open.

  6. In the console tree, right-click Security Configuration and Analysis, and then click Configure Computer Now.

  7. Do one of the following:

    • To use the default error log, in Error log file path, click OK.

    • To specify a different error log, in Error log file path, type a valid path and file name.

Notes

  • To perform this procedure, you must be a member of the Administrators group on the local computer, or you must have been delegated the appropriate authority. If the computer is joined to a domain, members of the Domain Admins group might be able to perform this procedure. As a security best practice, consider using Run as to perform this procedure.

  • To open Security Configuration and Analysis, click Start, and click Run, then type mmc and click OK. On the File menu, click Open, click the console that you want to open, and then click Open. Then, in the console tree, click Security Configuration and Analysis.

  • To check the log file, right click Security Configuration and Analysis, and then click View Log File.

  • The default path for the log file is:

    systemroot\Documents and Settings\UserAccount\My Documents\Security\Logs\

  • The security settings on the local computer take effect immediately.

  • To import more than one template to your computer policy, see Import a security template.

  • If you import more than one template, the database will merge the various templates to create one composite template, resolving conflicts in order of import. The last template that is imported takes precedence over any conflicting settings.

Information about functional differences

  • Your server might function differently based on the version and edition of the operating system that is installed, your account permissions, and your menu settings. For more information, see Viewing Help on the Web.

See Also

Concepts

Add Security Configuration and Analysis to an MMC console
Import a security template to a Group Policy object
Working with MMC console files
Configure local computer security
Security Templates