Question
Tailspin Toys is running a single Windows Server 2012 R2 Active Directory domain with multiple OUs configured for each of its 12 locations. An administrator
Tailspin Toys is running a single Windows Server 2012 R2 Active Directory domain with multiple OUs configured for each of its 12 locations. An administrator at each location is responsible for managing GPOs and user accounts. You are the enterprise administrator responsible for planning the infrastructure. For each of the following challenges, document your options and be prepared to share them with other students. 1.Administrators located at each location should be able to create new GPOs and edit any that they have created. They should not be able to change or delete GPOs that they have not created. What are your options for providing this functionality? Add the location administrators to the Group Policy Creator Owners group. 2. All users in each location are currently in one OU. Certain group policies should only apply to users in some departments and not others. What options should you consider that will allow group policies to be applied to only the necessary users? Use Security Group Filtering to apply Group Policies only to specific groups of users. 3. Although you have created a domain-wide policy that enforces restrictions on administrative tools, you do not want those settings to apply to users for which you have delegated administrative permissions on each location's OU. What are your options to solve this? Create a security group for each OU containing the delegated administrative accounts. Deny the Apply Group Policy permission to this group on the appropriate GPOs.<
Step by Step Solution
There are 3 Steps involved in it
Step: 1
Get Instant Access to Expert-Tailored Solutions
See step-by-step solutions with expert insights and AI powered tools for academic success
Step: 2
Step: 3
Ace Your Homework with AI
Get the answers you need in no time with our AI-driven, step-by-step assistance
Get Started