We have an unusual situation that we are looking for a solution to. By default, anyone in the Administrators group can add other local accounts and global accounts to the local Administrator's group. What we want to do is restrict that default functionality so that only a single local administrator's account and members of a specific global administrator's group are allowed to add anyone else to the local administrator's group. If anyone has done this or has any idea's on how it might be accomplished, please let me know. Thanks!