CionSystems
 
 
 

OU Delegation

The ability to establish access to individual organizational units is an important security feature in Active Directory Manager Pro.

The wizard makes it very simple with few clicks to specify the following:

  • Who to delegate authority.
  • Object authorization
  • Object permissions over the delegated objects.

Delegation can be done in two ways with the Active Directory Manager Pro.

  1. Common Tasks.
  2. Custom Tasks.

Common Administrative Tasks

Common Task provides the permissions like:

  • Create Delete and Manage User Accounts objects of a specific type.
  • Reset the Password , Resultant Set of Policy

Instead of delegating the same permissions to the many users, it is easy to create a group with those users. So that delegation can be easily applied for that group.

Custom Task Delegation

Users can delegate control of all existing or new objects in an organizational unit, and delegate administrative control of, such as only user objects in an organizational unit. Users can further filter and specify the delegation to the creation of the selected objects, the deletion of the object, or both.

Existing Objects in this folder and creation of new objects.

 

Only the objects in the folder:

In this case, Delegation is applied on the selected objects with the selected permission set.

 

Delete Permissions

The Delegated permissions over the selected objects can be deleted. Active Directory Manager Pro provides the facility to delete the permissions which are applied earlier over different objects.

OU Delegation Templates

OU Delegation templates are a powerful feature of Active Directory Manager Pro. Users can create the templates by defining the permissions and objects.

Templates contain object name and the selected permissions for the object. These are useful for standardizing the delegation permission management.

You can delegate the OU and the associated permissions from the templates page.