G
Guest
We plan to deligat control of OUs in our AD domain to departmental admin who will need to add users, computers, groups, etc. to the OUs they maintain. The deligation wizard makes the deligation of control easy, but now I'm stuck on tools they canuse to manage their OU. Is there a version of AD Users and Computers that they can run from their workstations or do I need to allow them logon access to the Domain Controller? Also, what groups should their users be in? I don't want to make them Domain Admins, would "Server Operators" be adequate and appropriate? I don't want them to be able to manage anything outside of their OU.