ALL >> System-Network-Administration >> View Article
Delegating Administrative Control
You delegate administrative control of domains, OUs, and containers in order to provide other mcp administrators, groups, or users with the ability to manage functions according to their needs. In small organizations, a few administrators might be responsible for managing Active Directory objects. However, larger organizations might require many more administrators, requiring administrators to manage specific domains, OUs, or containers or even specific objects within OUs or containers. To ensure that administrators receive the appropriate permissions, you must delegate the administration of the domain, OU, or container. The Delegation Of Control Wizard is provided to automate and simplify the process of setting administrative permissions for a domain or an OU. Once you've used the Delegation Of Control Wizard to set up permissions, you can view or modify permissions for an object by viewing or modifying the access control entries (ACEs) in the object's ACL.
When you delegate administrative control to users, you must ensure that the users take responsibility and can be held accountable. ...
... Provide training for users who have control of objects. If the users to whom you delegate responsibility are not performing the administrative tasks, you need to assume responsibility for their failure.
By default, all child objects in an get a+ certified online inherit the permissions set on the OU.
Make sure you know the difference between access control and delegating administrative control.
Why shouldn't administrators be assigned to the Administrators group?
Running Windows Server 2003 as an administrator makes the system vulnerable to Trojan horse attacks and other security risks. For most tasks, administrators should be assigned to the Users or Power Users group. To perform administrative-only tasks, administrators should log on as an administrator, perform the task, and then log off.
2.What is the purpose of the Run As program?
The Run As program allows a user to run specific tools and programs with permissions other than those provided by the account with which the user is currently logged on. Therefore, the Run As program can be used to run administrative tools with either local or domain administra?tor rights and permissions while logged on as a normal user.
3.What are the two ways of invoking the Run As Program?
The Run As program can be invoked on the desktop or by using the free practice IT questions Runas command from the command line.
Add Comment
System/Network Administration Articles
1. Fiber Fused Biconical Taper Systems And Fiber Cable Cutting Machine PotentialAuthor: Ryan
2. Understanding Polarization Maintaining Fiber Rotation Systems And Their Applications
Author: Ryan
3. Cat6a Patch Cable: The Best Preference For Comprehensive Cabling
Author: Ryan
4. A Brief Idea About The Mtp/mpo Cables And Their Use
Author: Ryan
5. 5 Reasons Why A Smart Bus Ticketing System Is The Future Of Public Transport
Author: Limon
6. How To Implement Technology In Your Inbound Call Center?
Author: DialDesk
7. How To Choose An Enterprise Help Desk It Support Company
Author: Entrust Network Services
8. Cost-effective Network Solutions For Offices In Singapore
Author: Entrust Network Services
9. Choosing Between Uv Light And Heat Ovens For Superior Performance
Author: James
10. The Right Tools And The Right Radius Are Vital In A Fiber Optic Polishing Process
Author: James
11. Lc And Sc Connectors Explained: Which Fiber Connection Is Right For You?
Author: James
12. A Closer Look At Armored Fiber Patch Cables
Author: James
13. The Essential Guide To Fiber Connectors: Sc, Fc, Lc, And St Explained
Author: Ryan
14. Wireless Network Setup Solutions For Offices By Entrust Network
Author: Entrust Network Services
15. Pcb Manufacturing: Understanding The Burn-in Test Process
Author: Ryan