Groupmanagement on specific OUs

Groupmanagement on specific OUs

Hi there,

I am trying to set up a new role for our application admins and it does not work as I planed it. Here ist what I have done so far:

- added a new technican
- chose a the role to edit groups, in this case to add and delete members
- chose the right OU where the groups lay in

If the admin logs in on the website he can see the groups but is not able to add users, which are in different OUs. For example:

OU1 called DMS with several groups -> this OU I have added to the technican
OU2 called Corp Users with all users in -> from this OU the admin must pick the users to add to the group

I want to prevent that the admin can change other groups which might be located in the OU2.

I hope this is understandable and looking forward for some advice.

thanks!

cheers

tom

                New to ADSelfService Plus?