...
...
...
...
...
...
...
...
...
...
...
...
...
...
The Austin Active Directory Department Group Tools are used to manage a Department's groups using a convenient and easy to use web interface. They allow for group management where native Active Directory tools are not installed or where that can not even be installed such as on a computer running a non-Windows OS.
There are three roles within the tool: Department OU Owner, Account Assignee, and Account Claimant.
Roles
The following roles are defined in the Department Group Tools:
Roles | Group Scope | Available Actions | How Someone Falls into Scope of the Role | ||||||||
---|---|---|---|---|---|---|---|---|---|---|---|
| Groups native to the Department Group Tools | Add Department Group Administrator Remove Department Group Administrator | When a Department OU is created, the requestor provides a list of the initial OU Owners. Department OU Owners can edit (add/remove) owners of the Department OU. If a Department falls in the scenario where there are no valid OU Owners (for example, all of the owners are former staff), the owners can be updated by one of the following processes:
| ||||||||
| Create Group Delete Group Rename Group Update Group Description Set Group Managers | Department OU Owners manage the Group Admins. | |||||||||
| Add a Group Member Remove a Group Member | ||||||||||
| Groups existing within a Department OU | Manage the memberships of the group (add/remove members) | You (or a group you are a member of) is set on the ManagedBy of a group. |
Group Location in AD
All groups created by the Department Group Tools are stored in the Department's sub-OU located in austin.utexas.edu/Groups/Managed
...