Reset user passwords permission
- From: "Carl Thoreson" <CarlThoreson@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Date: Fri, 22 Jul 2005 16:49:01 -0700
I have a group of administrators that I wish to grant access to have them be
able to reset other users passwords and control group membership. I have
created a global security group and added the users to the group. I have run
the delegate control wizard and delegated the tasks of reset user passwords
and force password change at next logon, read all user information, and
modify the membership of a group. When I go to the security tab of the
container, I see the group with the appropriate permissions. HOWEVER, the
permissions are not propagating down to the individual users. If I check the
security tab on any existing user, the group is not listed. If I create a
new user in the container, the group is then listed on the security tab and
the password can be reset.
We have a mix of 2000 and 2003 Domain Controllers. The delegate control
wizard was run on a 2003 server that is designated as the Operations Master,
Schema Master, PDC emulator, etc.
Any ideas?
.
- Follow-Ups:
- Re: Reset user passwords permission
- From: Paul Williams [MVP]
- RE: Reset user passwords permission
- From: Brian McCann
- Re: Reset user passwords permission
- Prev by Date: Re: server 2003 [error_netname_deleted]
- Next by Date: Dumping the Windows Event Log to MySQL
- Previous by thread: Migrating passwords with ADMT 2.0 without forcing a password chang
- Next by thread: RE: Reset user passwords permission
- Index(es):
Relevant Pages
|