The situation is this:
We have 23 domain controllers in our environment all over the world. In the last year, we added two for our exchange environment which has been outsourced. Originally, we had these vendors (exchange admins) as domain admins so that they can do what they need on their DC. We removed their access but they want it back again and through the SLA in our face.
My question: I understand that if I give the vendors access to their DC's, then they will have access to all our DC's which is not what I want. How can I restrict them to just having access to their own DC's and nothing else?
Thanks,
Rosalyn