I am looking for a way to make sure that lower level admins cannot change certain AD user attributes like samaccountname or universalprincipalname in an AD Windows 2003 environment. Is there a way that I can change the permissions to these attributes individually from write to read?
-- You received this message because you are subscribed to the Google Groups "Computer Tech Support" group. To post to this group, send email to [email protected]. To unsubscribe from this group, send email to [email protected]. For more options, visit this group at http://groups.google.com/group/computer-tech-support?hl=en.
