Delegating GPO Administration Rights without Domain Admin
i trying configure , apply gpo administration of group account without assigning domain admin rights group , users. in using group policy management snap-in have assigned group domain object, assigned full control objects , object related access problem not seem propagate lower level objects though shows configured 'this object , child objects'. im not sure if im missing simple (i have spent hour looking , testing) or if there more it. have 50 or gpo's reluctant go , modify each 1 individually.
assistance appreciated.
ps. not find information on search web.
assistance appreciated.
ps. not find information on search web.
use gpmc script (grantpermissiononallgpos.wsf) available @ http://www.microsoft.com/downloads/en/details.aspx?familyid=38c1a89b-a6d2-4f2a-a944-9236999aee65&displaylang=en
hth
marcin
Windows Server > Directory Services
Comments
Post a Comment