Re: Built in Groups Administrators issue in new raised functional leve
- From: Meinolf Weber [MVP-DS] <meiweb(nospam)@gmx.de>
- Date: Thu, 5 Feb 2009 20:43:42 +0000 (UTC)
Hello ADSadmins,
What domains are you tlaking about? Raising the level should not change the group membership. If the manual changes are reverted i would check all policies if somewhere restricted groups are configured.
Best regards
Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
Environment
4 child domains
1 forest root ( windows 2003 functional level) { Raised recently}
We found out that Child domain admins were no longer in the Built-In
Administrators group (ADS Users & Computers) this is after an upgrade
was performed Win2003 Functtional level.
Yesterday we manually restored the former settings. However, these
settings were again removed overnight.
If these changes are by design ? If yes, then we want to put it back,
question is how do we enforce?
thanks
.
- References:
- Prev by Date: Re: Server 2003 and FSMO roles
- Next by Date: Re: delegating Permissions
- Previous by thread: Re: Built in Groups Administrators issue in new raised functional
- Next by thread: Server 2003 and FSMO roles
- Index(es):