123ArticleOnline Logo
Welcome to 123ArticleOnline.com!
ALL >> System-Network-Administration >> View Article

Delegating Control Of A Gpo

Profile Picture
By Author: Mike Jones
Total Articles: 256
Comment this article
Facebook ShareTwitter ShareGoogle+ ShareTwitter Share

After you create a GPO, it is important to determine which groups of administrators have access permissions to the GPO. The default permissions on GPOs are shown in 220-701 exam.
By default, only the Domain Administrators, Enterprise Administrators, and Group Policy Creator Owner groups, and the operating system can create new GPOs. Nonadmin-istrative users or groups can be given the ability to create GPOs by adding the users or groups to the Group Policy Creator Owners security group. Membership in the Group Policy Creator Owners group gives a user full control of only the GPOs created by the user or explicitly delegated to the user. It does not give a nonadministrative user rights over any other GPOs. If an administrator creates a GPO, the Domain Administrators group becomes the Creator Owner of the GPO.
By default, the Default Domain Policy GPO cannot be deleted by any administrator. This prevents the accidental deletion of this GPO, which contains important required settings for the domain.
The Delegation Of Control Wizard is not available for automating and simplifying ...
... the process of setting administrative permissions directly for a GPO.
To delegate control of GPO editing, complete the following steps:
1.Access the Group Policy Object Editor for the GPO.
2.Right-click the root node of the GPO, and then click Properties.
In the Properties dialog box for the A+ certification cost, click the Security tab. In the Security tab,shown in Figure 10-14, click the security group for which you want to allow or deny administrative access to the GPO.
If you need to change the list of security groups for which you want to allow or deny administrative access to the GPO, you can add or remove security groups using Add and Remove.
4.To provide administrative control of all aspects of the GPO, set both the Read permission and the Write permission to Allow.
A user or administrator who has Read permission for a GPO but does not have Write permission cannot use the Group Policy Object Editor to see the settings that it contains. Write access is required to open a GPO.
5.Click OK.
Delegation across forests is supported for managing free CompTIA practice tests links. Other tasks, such as creating, deleting, or modifying GPOs across forests, are not supported. This is a new feature of the Windows Server 2003 family.

Total Views: 373Word Count: 377See All articles From Author

Add Comment

System/Network Administration Articles

1. Advantages And Applications Of Cat6a Patch Cables
Author: Ryan

2. Navigating Technological Landscapes: Unleashing Strategic It Consultancy Services In The Uae With Tls-it
Author: TLS-IT

3. Leading Cyber Security Awareness Training Solutions
Author: Phriendly Phishing

4. New Era Of It Infrastructure Managed Services In Oman : Seamless Management, Maximum Uptime
Author: Tech It Support

5. Unraveling The Basics Of Infrastructure Management
Author: Rapidflow Inc.

6. Devops Fwdays'24 Conference
Author: James Colin

7. Supercharging Your Database: Why Rapidflow Inc. Rocks With Oracle Database Help
Author: Rapidflow Inc

8. Boingo Wireless Launches First Wi-fi 7 Public Venue Network
Author: Orson Amiri

9. Exploring The Performance Aspect With Gold Alloys In Pcbs
Author: Ryan

10. Know About Rgb And Color Mixing In Led Pcb
Author: Ryan

11. Get Acquainted With The Benefits Of Hard Gold Pcbs
Author: Ryan

12. Secure Your Business With Vivency Global's Comprehensive Security Solutions
Author: vivency

13. Four Ways Automated Invoice Processing Can Reduce Payment Fraud
Author: Jessica Boland

14. Top Benefits Of Hiring Phone Answering Services
Author: Eliza Garran

15. Advantage Of Inbound Call Center System
Author: Maya

Login To Account
Login Email:
Password:
Forgot Password?
New User?
Sign Up Newsletter
Email Address: