Configuring Active Directory for Accounts and Groups for Wireless Access
To configure Active Directory user and computer accounts and groups for wireless access, do the following:
If you are using Windows 2000 domain controllers, install Windows 2000 SP3 or later on all domain controllers.
Ensure that all users that are making wireless connections have a corresponding user account.
Ensure that all computers that are making wireless connections have a corresponding computer account.
Set the remote access permission on user and computer accounts to the appropriate setting: either Allow Access or Control Access Through Remote Access Policy. The remote access permission setting is on the Dial-In tab on the properties of a user or computer account in the Active Directory Users And Computers snap-in.
Organize your wireless access user and computer accounts into the appropriate groups. For a native-mode domain, you can use universal and nested global groups. For example, create a universal group named WirelessUsers that contains global groups of wireless user and computer accounts for intranet access.
Use a native-mode domain and universal and global groups to organize your wireless accounts into a single nested group.