Click here to get back home

Permit only one network logon per user

 HomeNewsGroups | Search | About
 microsoft.public.windows.server.security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content
Subject Author Date
Permit only one network logon per user Christian Thies [Ar] 08-15-2007
Posted by Christian Thies [Ar] on August 15, 2007, 11:24 am
Please log in for more thread options
Hi, I have Windows 2003 domain working. I need to allow only one network
logon per user.



The example is:



User: username

Status: Logged



If user username try to login from a different machine, and he is logged in
another, the login attempt must be denied



How can I accomplish this?



Thanks in advance





Posted by Mathieu CHATEAU on August 15, 2007, 2:11 pm
Please log in for more thread options
Hello,

you can use limitlogin:
Limiting a user's concurrent connections in Windows Server 2003, Windows
2000, and Windows NT 4.0
http://support.microsoft.com/?scid=kb%3Ben-us%3B237282&x=10&y=10

the free addon itself is here:
http://download.microsoft.com/download/f/d/0/fd05def7-68a1-4f71-8546-25c359cc0842/limitlogin.exe


The other way is to only allow one login to log on one station. That's poor
& static.


--
Cordialement,
Mathieu CHATEAU
http://lordoftheping.blogspot.com


> Hi, I have Windows 2003 domain working. I need to allow only one network
> logon per user.
>
>
>
> The example is:
>
>
>
> User: username
>
> Status: Logged
>
>
>
> If user username try to login from a different machine, and he is logged
> in another, the login attempt must be denied
>
>
>
> How can I accomplish this?
>
>
>
> Thanks in advance
>
>
>
>


Posted by Christian Thies [Ar] on August 16, 2007, 4:38 pm
Please log in for more thread options
Mathieu, thansk for your help. I'll try and let you know if it is usefull

Regards

Christian

> Hello,
>
> you can use limitlogin:
> Limiting a user's concurrent connections in Windows Server 2003, Windows
> 2000, and Windows NT 4.0
> http://support.microsoft.com/?scid=kb%3Ben-us%3B237282&x=10&y=10
>
> the free addon itself is here:
>
http://download.microsoft.com/download/f/d/0/fd05def7-68a1-4f71-8546-25c359cc0842/limitlogin.exe
>
>
> The other way is to only allow one login to log on one station. That's
> poor & static.
>
>
> --
> Cordialement,
> Mathieu CHATEAU
> http://lordoftheping.blogspot.com
>
>
>> Hi, I have Windows 2003 domain working. I need to allow only one network
>> logon per user.
>>
>>
>>
>> The example is:
>>
>>
>>
>> User: username
>>
>> Status: Logged
>>
>>
>>
>> If user username try to login from a different machine, and he is logged
>> in another, the login attempt must be denied
>>
>>
>>
>> How can I accomplish this?
>>
>>
>>
>> Thanks in advance
>>
>>
>>
>>
>



Posted by Steve Riley [MSFT] on August 15, 2007, 8:47 pm
Please log in for more thread options
Why do you need to do this? What security risk do you need to mitigate?

Steve Riley
steve.riley@microsoft.com
http://blogs.technet.com/steriley


> Hi, I have Windows 2003 domain working. I need to allow only one network
> logon per user.
>
>
>
> The example is:
>
>
>
> User: username
>
> Status: Logged
>
>
>
> If user username try to login from a different machine, and he is logged
> in another, the login attempt must be denied
>
>
>
> How can I accomplish this?
>
>
>
> Thanks in advance
>
>
>
>

Posted by Christian Thies [Ar] on August 16, 2007, 4:34 pm
Please log in for more thread options
I'm building a product that is accessed with a username and password, and
for preventing unauthorized access to it, I need to prevent multiple
simultaneous logons with the same username and password



Sorry about my English. Let me know if the answer is clear



Christian

> Why do you need to do this? What security risk do you need to mitigate?
>
> Steve Riley
> steve.riley@microsoft.com
> http://blogs.technet.com/steriley
>
>
>> Hi, I have Windows 2003 domain working. I need to allow only one network
>> logon per user.
>>
>>
>>
>> The example is:
>>
>>
>>
>> User: username
>>
>> Status: Logged
>>
>>
>>
>> If user username try to login from a different machine, and he is logged
>> in another, the login attempt must be denied
>>
>>
>>
>> How can I accomplish this?
>>
>>
>>
>> Thanks in advance
>>
>>
>>
>>



Similar ThreadsPosted
"the local policy of this system does not permit you to logon interactively" April 11, 2007, 5:15 pm
Fatal exception 0E has occurred at 0028:c000A97F in VXD VMM(01)+000997F Seems to be after network logon. May 30, 2007, 12:54 pm
User Logon April 15, 2008, 9:54 pm
user logon time tracking November 3, 2006, 1:08 am
Questions on Authenticated Users and Access This Computer From Network User Right July 2, 2006, 8:38 pm
There are currently no logon servers available to service the logon request - how to fix this error? i get it when trying to access a share one hop away. April 12, 2007, 6:03 pm
Workstations showing logon failures by users can still logon? November 27, 2007, 6:56 pm
"Network Service" account is UNABLE to write to a network shared folder April 18, 2007, 7:01 pm
Just one logon January 5, 2006, 11:56 am
Unexpected security restriction for a user in both a user and administrative group. April 24, 2008, 10:05 pm

Our other projects:

Art Dolls, Fairies and Mermaids - Sunnyfaces.net

Roy's Linux, Programming and Search Engines messages

1-Script XML SitemapXML Sitemap