Answer the question
In order to leave comments, you need to log in
What rights govern access to the AD snap-in?
Good afternoon. I want to give technical support staff access to AD, located on a domain controller.
I gave the employees themselves rights in AD itself, but they cannot run the snap-in, since they require administrator rights, which they do not have on this server.
How is it possible to solve this issue? In order not to add the domain administrator role, but at the same time to have access to AD (for establishing users). It will not work to take the snap-in out of the domain controller, since other services are tied to it, which work only on the controller and are necessary for establishing users.
Answer the question
In order to leave comments, you need to log in
Who told you that "It will not work to take out snap-in for a domain controller"?
google rsat
no need to give permission to anyone to enter DC
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question