AD computer object security tab
The security tab of the computer properties window allows you to configure access permissions on the computer object.

The security tab allows you to grant or deny permissions to other groups and users over the computer object.
- In the “group or user names” section you can choose the group or the user to whom you would like to deny or allow permission.
- You can use the check boxes available in the “permissions” section to configure (allow or deny) the permissions the other users and groups will have over the computer object.
Advanced button (security tab)
Clicking on the advanced tab opens another window with the following tabs
- Permissions – using this tab you can view the other permissions that were assigned to the computer by inheritance and also which of the object’s permissions are inheritable. This tab also allows you to add permissions or edit existing permissions.
- Auditing – using this tab you can view and configure the types of object accesses to be audited(or in other words for what types of accesses a log has to be maintained)
- Owner – using this tab you can view and configure ownership rights over the computer object
- Effective permissions – This tab displays a list of permissions, each permission has a check box to its left indicating whether it’s effective or not
Related Articles
AD Group object properties – Security tab
The security tab of the group properties window is of high importance because it allows you to configure access permissions on the group object. The security tab allows you to grant or deny permissions to other groups and users over the group object. ...
AD object classification
Active directory objects can be classified into two broad types. 1. Security principal objects 2. Resources Security principal objects The objects that can be authenticated by AD are called security principal objects. These objects have unique ...
Active Directory User properties – Security tab
The security tab of the computer properties window allows you to configure access permissions on the user object. The security tab allows you to grant or deny permissions to other groups and users over the user object. In the “group or user names” ...
AD Group object properties – General tab
In the general tab you can modify the name of the group, add a small description about the group, add an email id that addresses the group and also convert group scope if necessary.
Active Directory Computer Delegation tab
The general tab When a computer is trusted for delegation it means that any services running on the local system can request services from other servers on behalf of the user. Do not trust this computer for delegation – specifies that no delegation ...