I would like to create a group that can fully adminstrate our AD forest but is NOT a
member of domain admins. How do I get started?
I created a group and added the members (groupa).
I then added GroupA to the local administrators group on each server.
I also Delegated GroupA full control of the company.com object in ADU&C. (Later we'll
delegate by OU)
Yet the members cannot do anything. What am I doing wrong?
Lori
�ا~�m����rدyث��?����+-�ً��Em����rدyث��?�+-}���b�֫r�zm����
��V�r�y�&��-�����4���i�b��b���