[ Team LiB ] |
Recipe 5.9 Delegating Control of an OU5.9.1 ProblemYou want to delegate administrative access of an OU to allow a group of users to manage objects in the OU. 5.9.2 Solution5.9.2.1 Using a graphical user interface
5.9.2.2 Using a command-line interfaceACLs can be set via a command-line with the dsacls utility from the Support Tools. See Recipe 14.10 for more information. 5.9.3 DiscussionAlthough you can delegate control of an OU to a particular user, it is generally a better practice to use a group instead. Even if there is only one user to delegate control to, you should create a group, add that user as a member, and use that group in the ACL. That way, in the future when you have to replace that user with someone else, you can make sure the new person is in the correct group instead of modifying ACLs again. 5.9.4 See AlsoRecipe 14.10 for changing the ACL on an object |
[ Team LiB ] |