We are setting up a new 2003 domain which containes 34 seperate OUs with a DC at each location. These OUs are at different locations across the US. I know how to delegate control within the AD for each OU but I'm not sure how exactly to delegate rights for DC administration. I don't want to add each OU admin to the domain admin group of course. I know most administration tasks can be done remotely but we want the local OU admins to perform as domain admins almost like they would if they had their own domain but not be able to mess with the other OUs in the domain. Any suggestions or concepts I may be over looking?
Thanks
Thanks