Solved

How to set up a limited MMC for delegated administration of an OU

Posted on 2008-10-30
4
419 Views
Last Modified: 2012-05-05
Picture the scene .... I have several OUs created for teams in my organisation. I have delegated control of User Account admin to a responsible member of each team. I opened a blank MMC and added the Users and Computers snap-in, and predictably the whole AD is listed.

How can I trim this snap-in so that only a designated OU is shown for any given junior admin.
0
Comment
Question by:AdoBeebo
  • 2
  • 2
4 Comments
 
LVL 31

Assisted Solution

by:Toni Uranjek
Toni Uranjek earned 500 total points
Comment Utility
Hi AdoBeebo,

Create TaskPad view.

"HOW TO: Create and Edit a Taskpad View in a Saved MMC Console in Windows 2000" it applies to 2003, also
http://support.microsoft.com/kb/321143

or

http://www.winsupersite.com/showcase/win2k_taskpad.asp

HTH

Toni
0
 
LVL 3

Author Comment

by:AdoBeebo
Comment Utility
HI

I'm able to add the Create User command after creating the Task Pad, but not the other tasks, namely:

Create, delete and manage user accounts
Reset user passwords and force password change at next logon
Read all user information
Modify the membership of a group.

Thanks
0
 
LVL 31

Accepted Solution

by:
Toni Uranjek earned 500 total points
Comment Utility
Put one user account (or group) in OU to which you have delegated this tasks, and the repeat the process of adding new Task. Most tasks are menu based, so select Menu command on second step and on next windows select appropriate task. Even if you don't create buttons (shortcuts) for all tasks, user will be able to perform them using right click or double click.
0
 
LVL 3

Author Comment

by:AdoBeebo
Comment Utility
Have had to put this on hold temporarily while we move an office, but will come back to it next week
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Join & Write a Comment

Do you have users whose passwords are expiring and they are constantly calling you?  Well I sure did and needed a way to put an end to this.  We have a lot of remote users which would not be notified that their passwords were expiring since they wer…
Find out how to use Active Directory data for email signature management in Microsoft Exchange and Office 365.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now