Basically my issue is some users need to be configured as local Administrators which in turn gives them the ability to modify aspects of their network adaptors.
This has become a problem because I have a few clever users who figured out that by unchecking "Client for Microsoft Networks" they can block access to their machines to a degree. This creates a bigger problem because Active Directory is no longer able to update group policy on the computer because it uses a default admin share setup when the computer is joined to the domain.
Is there a setting in Group Policy that I can manage so that I can enable all required services, clients, and protocols on the users NIC's and block them from making changes to the NIC's?
Thanks in advance for those who reply! :)
Thanks, Andrew