- Sep 18, 2012
- 703
- 45
- 91
Hey folks,
So I created a sec. group because I now have people working for me who need to be admins, but tier 1 only. No need to give them domain admin. Here is my question.
If I delegate permissions through active directory to the group, will that cause them to be unable to install software on domain systems? I need them to have that capability, I just don't want to them be able to elevate their own privs or make and domain changes in AD.
Thanks for the help!
So I created a sec. group because I now have people working for me who need to be admins, but tier 1 only. No need to give them domain admin. Here is my question.
If I delegate permissions through active directory to the group, will that cause them to be unable to install software on domain systems? I need them to have that capability, I just don't want to them be able to elevate their own privs or make and domain changes in AD.
Thanks for the help!