When a new machine joined an Active Directory Domain on Server 2012 R2, some default restrictions are applied to the client unless the domain administrator has changed them.

Windows Domain client default restrictions

Here is the complete list:

  1. Network settings (Unchangeable)
  2. Executable files execution (Restricted)
  3. Date and time (Unchangeable)
  4. Timezone (Changeable)
  5. Desktop background (Changeable)
  6. C drive read/write (Permitted)
  7. Windows, Users, Program Files inside C drive where OS is installed (Only readable)
  8. Windows Firewall settings (Unchangeable)
  9. Driver settings (Unchangeable)
  10. Windows update settings (Unchangeable)
  11. Computer name (Unchangeable)
  12. Client domain join/remove (Unchangeable)
  13. Removable devices (Permitted)

If some settings are missing from this list, feel free to let me know in the comments.

List of Default Restrictions for Client Computers in Windows Server 2012 R2 Domain
Avatar

Karim Buzdar

About the Author: Karim Buzdar holds a degree in telecommunication engineering and holds several sysadmin certifications. As an IT engineer and technical author, he writes for various web sites. He blogs at LinuxWays.

One thought on “List of Default Restrictions for Client Computers in Windows Server 2012 R2 Domain

  • Avatar
    April 5, 2017 at 9:08 am
    Permalink

    whether the device is Windows 10 compatible to the program?

    Reply

Leave a Reply

Your email address will not be published. Required fields are marked *

*