Hi, I was wondering if anyone out there could shed some light or a workaround for an issue we are having.
We are a large organisation of 1000 users with Windows 2000/2003 DC's. We have a helpdesk user (account operator and server operator) who creates folders and shares them. Our standard being that the security group/user and domain admins group have full access to this share. The problem is that the helpdesk user can add the user permission ok but cant add the domain admins groups. I presume this is "by design" that a user cant apply permissions to a user/group with elevated rights.
They need to apply these permissions on file servers that are both member server and DC's.
Anyone have any suggestions on how to a) resolve the issue or b) a work around ?
Thanks in advance for any assistance.
We are a large organisation of 1000 users with Windows 2000/2003 DC's. We have a helpdesk user (account operator and server operator) who creates folders and shares them. Our standard being that the security group/user and domain admins group have full access to this share. The problem is that the helpdesk user can add the user permission ok but cant add the domain admins groups. I presume this is "by design" that a user cant apply permissions to a user/group with elevated rights.
They need to apply these permissions on file servers that are both member server and DC's.
Anyone have any suggestions on how to a) resolve the issue or b) a work around ?
Thanks in advance for any assistance.