Re: Permission for user account in AD
From: Chriss3 (noSpamHere_at_chrisse.se)
Date: 06/10/04
- Next message: Patrick Ruane: "RE: Local Security Overriding GP?"
- Previous message: Chriss3: "Re: Cannot see the replica"
- In reply to: Mihhail Sergejev: "Permission for user account in AD"
- Next in thread: Paul Bergson: "Re: Permission for user account in AD"
- Reply: Paul Bergson: "Re: Permission for user account in AD"
- Messages sorted by: [ date ] [ thread ]
Date: Thu, 10 Jun 2004 15:21:01 +0200
This is the behavior when a user is member of one or more protected groups
http://support.microsoft.com/default.aspx?scid=kb;en-us;232199
-- Regards Christoffer Andersson No email replies please - reply in the newsgroup ------------------------------------------------ http://www.chrisse.se - Active Directory Tips "Mihhail Sergejev" <nejit@nej.ee> skrev i meddelandet news:1ad7001c44ed6$bf49f700$a001280a@phx.gbl... > Hi, > > I have a Windows 2000 native mode domain with Windows > 2000/2003 DCs. > Has noticed that I can not change permission for user > account (in AD User&Computers right-click account, > properties, Security-tab) if this account in the past was > member of Domain Admins global group. > Though I can make any changes (I need to delegate Full > Control for Account Operators), some time later > permissions are reset back and check-box "Allow > inheritable permissions from parent to propagate to this > object" (Security-tab of user account properties) is > cleared. > > For user account that never was member of Domain Admins > group I can successfully change permissions. > > Please, help... > > Thank, > Mihhail
- Next message: Patrick Ruane: "RE: Local Security Overriding GP?"
- Previous message: Chriss3: "Re: Cannot see the replica"
- In reply to: Mihhail Sergejev: "Permission for user account in AD"
- Next in thread: Paul Bergson: "Re: Permission for user account in AD"
- Reply: Paul Bergson: "Re: Permission for user account in AD"
- Messages sorted by: [ date ] [ thread ]
Relevant Pages
|