Granting a user the ability to create an object in the OU implicitly grants that user the ability to manipulate any attribute of any object that the user creates. In addition, if the object that is created is a container, the user implicitly has the ability to create and manipulate any objects that are placed in the container. Skip to main content. This browser is no longer supported. Download Microsoft Edge More info. Contents Exit focus mode. Viewed 1k times.
I have two questions: a In order for the users to be able to perform these actions from their workstations, is there any other method other than installing the Remote Server and Administration Tools? Many thanks! Improve this question. Shane Madden k 12 12 gold badges silver badges bronze badges. You can create custom taskpads as needed: windowsitpro. BTW, there are 3rd party tools from various outfits that use a web interface to allow delegates just what they have access to as well.
Thank you everyone for your answers and comments. I thought as much; I guess AD is fully readable by definition - it is a directory. TheCleaner - Thanks for the tip on 'Taskpads' - very cool. Add a comment. Active Oldest Votes. Don't worry, nothing's gone wrong. You can unsubscribe at any time. Delegation requires you to give the authority to a group or user for a specific task or group of tasks, Password resets are a prebuilt option.
Once the delegation is created you need to provide the tools to allow the user to perform said action, here you would create an MMC snap in tool. Now the delegation control wizard will start ,Click next 3. No Account? Sign up. By signing in, you agree to our Terms of Use and Privacy Policy. Already have an account? This is necessary because the Management Web Service will attempt to connect to the App-V data store by using the credentials of the App-V administrator who is using the console.
Note If you install the App-V Management Server software on a single server and place the data store on a separate server, there is one situation in which you must still configure the server to be trusted for delegation even though the Management Web Service and Management Console are on the same server. This situation occurs if you need to connect to the Management Web Service in the console by using the Use Alternate Credentials option.
The following table lists the types of delegation that can be configured for each Domain Functional Level for App-V. Detailed instructions follow the table. In the right pane, right-click the computer name for the Web server, and then click Properties. On the General tab, ensure that the Trust computer for delegation check box is selected.
0コメント