Re: User Permission - [WildPacket]
- From: "Paul Williams [MVP]" <ptw2001@xxxxxxxxxxx>
- Date: Fri, 3 Mar 2006 08:12:44 -0000
This user shouldn't be a member of any of the built-in groups. You should
create your own groups and delegate the necessary permissions to those
groups. You then add this user and other users to the necessary groups,
e.g. Create Users, Create Contacts, etc.
Take a look at the best practices guide for delegating active directory
administration whitepaper and its appendixes.
--
Paul Williams
Microsoft MVP - Windows Server - Directory Services
http://www.msresource.net | http://forums.msresource.net
.
- Prev by Date: Re: Blocking certain URL's
- Next by Date: Re: _msdcs zone in multi domain forrest
- Previous by thread: Re: Blocking certain URL's
- Next by thread: Re: user unable to logon
- Index(es):
Relevant Pages
|