05.03.2013 Views

MCSA/MCSE Self-Paced Training Kit (Exam 70-270): Installing ...

MCSA/MCSE Self-Paced Training Kit (Exam 70-270): Installing ...

MCSA/MCSE Self-Paced Training Kit (Exam 70-270): Installing ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Table 16-3 Privileges Available in Windows XP Professional<br />

Privilege Description<br />

Load And Unload<br />

Device Drivers<br />

Manage Auditing<br />

And Security Log<br />

Modify Firmware<br />

Environment<br />

Values<br />

Perform Volume<br />

Maintenance<br />

Tasks<br />

Profile Single<br />

Process<br />

Profile System<br />

Performance<br />

Remove Computer<br />

From Docking<br />

Station<br />

Restore Files<br />

And Directories<br />

Lesson 3 Configuring User Rights<br />

16-27<br />

Allows a user to install and uninstall Plug and Play device drivers. Non-<br />

Plug and Play device drivers are not affected by this privilege.<br />

By default, only Administrators have this privilege. Exercise caution when<br />

granting this privilege. Device drivers run as trusted programs, and only<br />

device drivers with correct digital signatures should be installed. By<br />

default, members of the Administrators group have this privilege on<br />

workstations, member servers, and domain controllers.<br />

Allows a user to specify object access auditing options for individual<br />

resources such as files, Active Directory objects, and Registry keys. A user<br />

with this privilege can also view and clear the security log from the Event<br />

Viewer.<br />

By default, members of the Administrators group have this privilege on<br />

workstations, member servers, and domain controllers. Be careful who<br />

you assign this privilege to because they have the power to cover their<br />

tracks by clearing the Security event log.<br />

Allows a user to use the System Properties program to modify system<br />

environment variables. Allows a process to use an API to modify the system<br />

environment variables.<br />

Allows users to run disk tools such as Disk Cleanup or Disk Defragmenter.<br />

By default, members of the Administrators group have this privilege on<br />

workstations, member servers, and domain controllers.<br />

Allows a user to use performance-monitoring tools to monitor the performance<br />

of nonsystem processes. By default, on workstations and member<br />

servers, Administrators and Power Users have this privilege. On domain<br />

controllers, only Administrators have this privilege.<br />

Allows a user to use performance-monitoring tools to monitor the performance<br />

of system processes. By default, members of the Administrators<br />

group have this privilege on workstations, member servers, and domain<br />

controllers.<br />

Allows a user to undock a portable computer. By default, members of the<br />

Administrators, Power Users, and Users groups have this privilege on<br />

workstations and member servers.<br />

Allows a user to restore backed up files and directories without being<br />

assigned the appropriate file and folder permissions, and allows a user to<br />

set any valid security principal as the owner of the object. By default,<br />

members of the Administrators and Backup Operators groups have this<br />

privilege on workstations, member servers, and domain controllers. On<br />

domain controllers, members of the Server Operators group also have this<br />

privilege.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!