The information in this article applies to:
SYMPTOMS
After you assign complete control of an Organizational Unit (OU) to a user or group using the Active Directory Users And Computers snap-in for Microsoft Management Console (MMC), that user or group may not be able to edit or create Group Policy objects.
CAUSEThis issue occurs because the user or group that has control of the OU is not a member of the Group Policy Admins security group. RESOLUTION
To resolve this issue, add the user or group to the Group Policy Admins security group. To do this, follow these steps:
Q221577 How to Delegate Authority for Editing a Group Policy ObjectFor More information about creating customer MMC snap-ins if Active Directory Users And Computers is not listed in the Administrative Tools of the Domain Controller, please see the following article in the Microsoft Knowledge Base: Q230263 How to Create Custom MMC Snap-in Tools STATUSThis behavior is by design. Additional query words: GPEDIT DCW
Keywords : kbenv kbnetwork kbtool ntsecurity |
Last Reviewed: December 30, 1999 © 2000 Microsoft Corporation. All rights reserved. Terms of Use. |