Adding a route WITHOUT admin rights like WinXP with "Network Admins" group
How can I set a policy so non-admin users can add a route?
In particular this is a VPN connection using OpenVPN, and OpenVPN must set some routes after connecting.
It works when OpenVPN-GUI is run with admin rights, but I don't want my users to have admin rights.
In Windows XP the solution was: Add the user to the local Network Administrator (or Network Operators) group, done, perfect solution.
In Windows 7: Does not work, the users cannot set the route, they get "access denied"
(to be more exact: "route addition failed using CreateIpForwardEntry: Zugriff verweigert [status=5 if_index=19]")
Now which Group Policy do I have to change or set to allow changing routes for non-admin users?
Or which part registry to I have to play with i.e. change access rights?
I don't want to run the VPN as a service on a client machine too.
September 28th, 2010 2:58am