I need to provide a user read only access to AD in a Windows 2003 Active Directory. I do not know how to do this and I would like as mucha help as all of you can give me... Thanks James
Printable View
I need to provide a user read only access to AD in a Windows 2003 Active Directory. I do not know how to do this and I would like as mucha help as all of you can give me... Thanks James
Read access...so like they can view everything in each OU in AD but not modify?
They should just be able to use the Active directory users and computers snap in to view the entire directory, if they have a valid account on the domain no problem. If you have areas that are not visible, you'll have to add read access to those OU's (maybe through delegation, not so sure).
Users should, by default, be able to view the AD without having edit permissions.
I get both of you but they will need to login directly the Domain ontroller. by default hey cannot login to thedomain controller. I will try this by adding the permissin so that they can login to the DC and see if this gives them red only.
....to log into the domain controller remotely, they "have" to be domain admins, so...meaning they won't have read only access. You could add them to the local user's group and have them access the server interactively, not a good idea though.