Re: delegate admin rights to an user in an OU
- From: "Jorge de Almeida Pinto [MVP - DS]" <SubstituteThisWithMyFullNameSeparatedByDots@xxxxxxxxx>
- Date: Mon, 20 Nov 2006 21:48:27 +0100
the local admin should be able to:use restricted groups to make the admin an indirect member of the local
- install programs that need local admin rights
administrators group on every client (with indirect I mean, make the
admin(s) a member of an AD group and configure that AD group to be a member
of the local administrators group through restricted groups)
- take backupof what?
- share fileswhere?
- create and share printerswhere?
- add computers to domaindelegate! --> see:
http://blogs.dirteam.com/blogs/jorge/archive/2006/01/05/369.aspx
- create users, reset password for other users in his OUdelegate! --> see:
http://blogs.dirteam.com/blogs/jorge/archive/2006/01/05/369.aspx
also see:
http://blogs.dirteam.com/blogs/jorge/archive/2006/05/16/983.aspx
please don't multipost. post your Q's in the appropriate newsgroup (this was
also posted in the GPO NG)
--
Cheers,
(HOPEFULLY THIS INFORMATION HELPS YOU!)
# Jorge de Almeida Pinto # MVP Windows Server - Directory Services
BLOG (WEB-BASED)--> http://blogs.dirteam.com/blogs/jorge/default.aspx
BLOG (RSS-FEEDS)--> http://blogs.dirteam.com/blogs/jorge/rss.aspx
------------------------------------------------------------------------------------------
* This posting is provided "AS IS" with no warranties and confers no rights!
* Always test before implementing!
------------------------------------------------------------------------------------------
#################################################
#################################################
------------------------------------------------------------------------------------------
"Tomppa" <tofors99@xxxxxxxxxxx> wrote in message
news:%23Hy2%23xNDHHA.1196@xxxxxxxxxxxxxxxxxxxxxxx
Is it possible to give an user in a branch office so much rights with
delegate control and group policies, so he could administrate their DC
without help from the domainadmin?
the local admin should be able to:
- install programs that need local admin rights
- take backup
- share files
- create and share printers
- add computers to domain
- create users, reset password for other users in his OU
Is this possible with a reasonable amount of work?
Tomppa
.
- References:
- delegate admin rights to an user in an OU
- From: Tomppa
- delegate admin rights to an user in an OU
- Prev by Date: Re: Move a user to new group and make it as primary....
- Next by Date: Re: SID WINDOWS
- Previous by thread: delegate admin rights to an user in an OU
- Next by thread: Re: delegate admin rights to an user in an OU
- Index(es):
Relevant Pages
|