I am installing a new SBS 2011 server with the Premium add-on. The second server is a Windows server 2008r2 box & will act as the Remote Desktop Service server.
On this network the users need to be able to login to the SBS domain from their pc's & also the RDS server, but I need to be able to secure the RDS server with a GPO so that they cannot access the Administrator tools, control panel etc. Configuring the Policy is not the issue but allowing the users to login to both the domain & RDS with the same user accounts, but have different user policies applied is the issue.
I have created a new OU named Terminal Server, moved the "RDS Server" into the OU & configured the policy, but the user configuration from the Terminal Server OU is not being applied. I tried configuring User Group Policy Loopback Processing Mode, with the replace option, but it does not make a difference. The explanation in that policy does state that it only applies when the user account & computer account are in Windows 2000 domains.
Can my objective be achieved in SBS2011?
Regards, Scott