123ArticleOnline Logo
Welcome to 123ArticleOnline.com!

ALL >> System-Network-Administration >> View Article

Delegating Control Of A Gpo

By Author: Mike Jones
Total Articles: 256

After you create a GPO, it is important to determine which groups of administrators have access permissions to the GPO. The default permissions on GPOs are shown in 220-701 exam.
By default, only the Domain Administrators, Enterprise Administrators, and Group Policy Creator Owner groups, and the operating system can create new GPOs. Nonadmin-istrative users or groups can be given the ability to create GPOs by adding the users or groups to the Group Policy Creator Owners security group. Membership in the Group Policy Creator Owners group gives a user full control of only the GPOs created by the user or explicitly delegated to the user. It does not give a nonadministrative user rights over any other GPOs. If an administrator creates a GPO, the Domain Administrators group becomes the Creator Owner of the GPO.
By default, the Default Domain Policy GPO cannot be deleted by any administrator. This prevents the accidental deletion of this GPO, which contains important required settings for the domain.
The Delegation Of Control Wizard is not available for automating and simplifying the process of setting administrative permissions directly for a GPO.
To delegate control of GPO editing, complete the following steps:
1.Access the Group Policy Object Editor for the GPO.
2.Right-click the root node of the GPO, and then click Properties.
In the Properties dialog box for the A+ certification cost, click the Security tab. In the Security tab,shown in Figure 10-14, click the security group for which you want to allow or deny administrative access to the GPO.
If you need to change the list of security groups for which you want to allow or deny administrative access to the GPO, you can add or remove security groups using Add and Remove.
4.To provide administrative control of all aspects of the GPO, set both the Read permission and the Write permission to Allow.
A user or administrator who has Read permission for a GPO but does not have Write permission cannot use the Group Policy Object Editor to see the settings that it contains. Write access is required to open a GPO.
5.Click OK.
Delegation across forests is supported for managing free CompTIA practice tests links. Other tasks, such as creating, deleting, or modifying GPOs across forests, are not supported. This is a new feature of the Windows Server 2003 family.

Total Views: 138Word Count: 377See All articles From Author

System/Network Administration Articles

1. Best Places To Buy Backconnect Proxy
Author: microleaves

2. The Application Delivery Network Load Balancer Market Supercharge Your Network To
Author: Pamela Sun

3. Avanu Webmux Application Delivery Load Balancing Solution
Author: Pamela Sun

4. Conflict In The Workplace: A Waste Of Time & Energy
Author: Nick Wells

5. Get Asset Management Solution Software
Author: Shophia Pena

6. Digital Library Management System - A Collection Of Content In Digital Format
Author: Anika Ahuja

7. How To Choose Employee Performance Software
Author: Engagedly Inc

8. Ccnp Training, Cisco Certified Network Professional Security Training Hyderabad - Golarsnetworks
Author: GolarsNetworks

9. Croyant Software Technologies |smart Choice For Your Business , Call Us: 7036775091
Author: sales Croyanttech

10. Ensure Better Economical End User Experience With Snmp
Author: James J. Adams

11. Browser Support Phone Number+1-844-622-1670
Author: Brendan Diamond

12. Guidelines Of Enhanced Cybersecurity And It Security Services
Author: Singhvarinder

13. Why Custom Mobile App Development Service In Texas Is The Best Bet
Author: ayokasystems

14. Check Server Health Using Snmp - In Search Of The Preeminent Tools
Author: James J. Adams

15. Want Enhanced Business Communication? Make Use Of Hosted Voip Telephony
Author: Hosted VoIP, Vertical Telephone System

Login To Account
Login Email:
Forgot Password?
New User?
Sign Up Newsletter
Email Address: