Quantcast
Channel: Exchange Server 2013 - Administration, Monitoring, and Performance forum
Viewing all articles
Browse latest Browse all 9032

How to scope the write scope of a customized management role group on the basis on OU and Database groups

$
0
0

How to scope the write scope of a customized management role group on the basis on OU and Database groups?

I have Single forest single domain Ad forest with 2 AD sites. Exchange server 2010 SP2 is installed. Each site has its own set of Exchnage server roles. I have created two OUs. (HQ and Branch namly). All the servers and user computers (Including DC and Exchange servers) for the respected site is placed in the respected OU. (Servers and user machines for HQ site is stored in HQ OU. Servers and user machines for Branch site is stored in Branch OU.) Each site has two Exchnage admins. One is at the basic level and the other is at expert level. Each exchange admin should be able to manage  only their own Exchange server databases. (Should not be able to manage the Exchange databases on the other site). To effect this I have planned to implement RBAC security model. I have created a customized management role. I need to scope it on the basis of OU and Databases. When I do the scoping it is effecting only on one level. ie. either at OU level or at Database level. How to fix this.

Jobish


Viewing all articles
Browse latest Browse all 9032

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>