I will be installing several Windows 2008 servers and know how to install Active Directory. My question is because these servers will be in the environment of a state department of corrections and a few users will be inmates who need to be restricted as to what they can access as compared to staff users, I am curious what you might suggest: Should I setup multiple forests? A separate or multiple OUs or just a simply inmate user group and define in that group what inmate accounts can access and NOT include inmate accounts in any domain groups?
Thanks,
Thanks,