Solved

How to set up a limited MMC for delegated administration of an OU

Posted on 2008-10-30
4
426 Views
Last Modified: 2012-05-05
Picture the scene .... I have several OUs created for teams in my organisation. I have delegated control of User Account admin to a responsible member of each team. I opened a blank MMC and added the Users and Computers snap-in, and predictably the whole AD is listed.

How can I trim this snap-in so that only a designated OU is shown for any given junior admin.
0
Comment
Question by:AdoBeebo
  • 2
  • 2
4 Comments
 
LVL 31

Assisted Solution

by:Toni Uranjek
Toni Uranjek earned 500 total points
ID: 22840201
Hi AdoBeebo,

Create TaskPad view.

"HOW TO: Create and Edit a Taskpad View in a Saved MMC Console in Windows 2000" it applies to 2003, also
http://support.microsoft.com/kb/321143

or

http://www.winsupersite.com/showcase/win2k_taskpad.asp

HTH

Toni
0
 
LVL 3

Author Comment

by:AdoBeebo
ID: 22840509
HI

I'm able to add the Create User command after creating the Task Pad, but not the other tasks, namely:

Create, delete and manage user accounts
Reset user passwords and force password change at next logon
Read all user information
Modify the membership of a group.

Thanks
0
 
LVL 31

Accepted Solution

by:
Toni Uranjek earned 500 total points
ID: 22840592
Put one user account (or group) in OU to which you have delegated this tasks, and the repeat the process of adding new Task. Most tasks are menu based, so select Menu command on second step and on next windows select appropriate task. Even if you don't create buttons (shortcuts) for all tasks, user will be able to perform them using right click or double click.
0
 
LVL 3

Author Comment

by:AdoBeebo
ID: 23002340
Have had to put this on hold temporarily while we move an office, but will come back to it next week
0

Featured Post

Does Powershell have you tied up in knots?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Learn about cloud computing and its benefits for small business owners.
Is your Office 365 signature not working the way you want it to? Are signature updates taking up too much of your time? Let's run through the most common problems that an IT administrator can encounter when dealing with Office 365 email signatures.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.

773 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question