Tyro <> wrote:
<top-posting macro corrected>
>>
>> No, you do not need to be on a domain for secure logon. It is enabled
>> by default on the server version, but you have to enable it on Vista
>> if you really want that.
>>
>> Type netplwiz in the start search box and go to the bottom of the
>> Advanced tab.
>
> But why would you want to use it if there is only 1 user on the computer?
> This is useful only on a domain where you want to hide multiple users on
> the same computer.
It's got nothing to do with domains. You are getting mixed up with the
domain style logon screen, like the Win2000 login screen, as opposed to the
Welcome Screen type login introduced with XP. You cannot use the Welcome
Screen on a domain.
The secure login can be used with either type of login screen, as far as I
can see, as it is enabled by default on Win2003 which has a domain style
login screen, and it is also enabled by default on Win2008, which has a
Welcome Screen type login screen by default. It can be used on domains or
workgrouped computers.
Secure login does not hide the name of the person who last logged in with a
domain style login screen. You need to set that is security policy if you
want that.
Secure login means that you need to type Ctrl+Alt+Del, before you get to the
login screen. This is to make sure that it is the genuine login screen you
are using, and not some lookalike image on the screen from malicious
software that is trying to find out users' login details [similar to a
phishing website, or a false front to a cash machine (ATM)].
http://en.wikipedia.org/wiki/Secure_attention_key
http://en.wikipedia.org/wiki/Winlogon
ss.