• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

Active Directory - Delegate Permissions

GobBluth

Senior member
Hey folks,

So I created a sec. group because I now have people working for me who need to be admins, but tier 1 only. No need to give them domain admin. Here is my question.

If I delegate permissions through active directory to the group, will that cause them to be unable to install software on domain systems? I need them to have that capability, I just don't want to them be able to elevate their own privs or make and domain changes in AD.

Thanks for the help!
 
If they need to have admin access on the workstations, but not on the server(s), put them all in a group and then push out a global policy that makes that group a member of the local Administrators group on the workstations.
 
Back
Top