Realized (refer to SCCM Docs) all the three entities CAS, Primary and Secondary needs to have permissions for themselves, individually Wish CAS could have done publishing this info AD, not sure why isn't it designed this way ?
From: [email protected] [mailto:[email protected]] On Behalf Of Miriyala, Vasu Sent: Tuesday, January 31, 2017 4:39 PM To: [email protected] Subject: [mssms] Systems Management Container - AD Container Rights WARNING: Kindly be aware the Sender Address on this mail may be forged. It appears to be from capgemini.com but the message has been received from a server outside Capgemini Group perimeter. User discretion is necessary before performing actions mentioned in this mail. Hi Champs, SCCM to publishes its Site, Boundary, MP etc info. In this context, does CAS server's write permission to AD container "System Management" sufficient or each Primary and Secondary also needed to have write permission on this AD object ? In my case I do add/modify all such stuff at CAS level and I think CAS server can write SCCM info to AD on behalf of reporting primaries also at least wish ), however wanted to confirm with you Kind Regards,Vasu This message contains information that may be privileged or confidential and is the property of the Capgemini Group. It is intended only for the person to whom it is addressed. If you are not the intended recipient, you are not authorized to read, print, retain, copy, disseminate, distribute, or use this message or any part thereof. If you receive this message in error, please notify the sender immediately and delete all copies of this message.

