Training
Module
Create and configure Group Policy Objects in Active Directory - Training
This module focuses on Group Policy objects, including using them to enforce a robust password policy.
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
This article describes how to use Group Policy Objects (GPOs) to change default logon domain name.
Applies to: Windows client (All supported versions)
Original KB number: 2908796
In multi domain environment, there are scenarios where users consistently login to workstations that are joined to a different domain than that of the logged in user. By default the domain that the workstation is joined to is listed as the default domain name and other domain users have to always provide the user name as domain\username to login correctly. Also there are scenarios where the machine is domain joined but the logins are almost always happening with local user accounts (using .\username).
Its a common mistake that users make to skip the domain name and unknowingly attempt to login to a different domain than theirs and result in failures. To avoid these problems and improve user experience, you may decide to choose a default logon domain name that is different from workstation domain name.
The following group policy setting is available in Windows Vista or later operating systems:
To enable default domain for logon, follow these steps:
Note
Use Group Policy Management console(GPMC.msc) to create a GPO and configure the settings at domain or OU level.
The Assign a default domain for logon group policy specifies a default logon domain that may be different domain than the machine joined domain. You can enable this policy setting and add the preferred domain name so that the default logon domain name will be set to the specified domain that may not be the machine joined domain. If you enable this policy and set the domain name as a period (.), once the policy is applied to the machine, users will see a period (.) as their default domain and unless users specify a domainname\username to login, all users will be treated as local users. (.\username)
Note
Requirements: This policy is applicable to Windows Vista or later.
Training
Module
Create and configure Group Policy Objects in Active Directory - Training
This module focuses on Group Policy objects, including using them to enforce a robust password policy.