This is an interesting thread. We don't do it ourselves, we have admins w/o native rights who make requests through a web interface on a mainframe that slowly find their way down to a Windows 2000 server in a serious of batch records that action the work. Using local admins gives some guarantee that the person has been determined to be who they say they are.
On another side of this though, is anyone doing this with security group creations/deletions and security group membership management? If so, what are you using, how well does it work? joe -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Shad Gunderson Sent: Wednesday, October 29, 2003 9:30 AM To: '[EMAIL PROTECTED]' Hello all, I'm looking for feedback on products that may provide users a self-service application that will allow employees to register/request an Active Directory domain account and, with some workflow, those accounts will be created. Nothing beyond those specific features are required at this point (i.e. not looking for full-blown LDAP provisioning). Does anyone here use such tools or have any experience they'd care to share? Regards, Shad Gunderson List info : http://www.activedir.org/mail_list.htm List FAQ : http://www.activedir.org/list_faq.htm List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/ List info : http://www.activedir.org/mail_list.htm List FAQ : http://www.activedir.org/list_faq.htm List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/
