Delegate Rights to the AD "OU" Group
Using the Delegation of Control Wizard in Active Directory to establish the following settings:
Tasks to Delegate
-
Create, delete, and manage groups
-
Modify the membership of a group
Additional Settings
- Group Naming Format:
- Enter the Active Directory Group naming format.
- Default:
- "
SP_ [TITLE]_[GROUP]"[TITLE]is replaced with the first 10 characters of the Connection name[GROUP]is replaced with the system's Group name.
- "
- All Users Group:
- This option is available with some connectors.
- Check this box to trigger the creation of a special Active Directory Group which will contain all the valid Users for this connection.
- Any record or document that is marked as public or not secured will use this Group, instead of "Everyone".
- This ensures that only valid Users can access the data, even though an Item itself is not secured within the database.