OSD Delegation Rights- ConfigMgr 2007
Folks,
I'm looking to delegate the abilty to use OSD features within SCCM , but i want to ensure the group can only manage their respective sections, not alter other task sequences, etc
Can anyone provide a reference to a good starting point?
Thanks!
Stephen
July 26th, 2011 5:48pm
With the ConfigMgr User Wizard, you can add users and specify the permissions for this users based on classes and instances. And then give then either instance or class rights to whatever objects you want them to use/administer.
Have a look at
http://technet.microsoft.com/en-us/library/bb632332.aspx for User Rights Table.Zulqarnain Ali | MCTS, MCSA | Please remember to click Mark as Answer on the post that helps you, and to click Unmark as Answer if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.
Free Windows Admin Tool Kit Click here and download it now
July 27th, 2011 2:23am
this blog by Shitanshu is an interesting role based solution - we used this to see the different possibilities, and constructed our own matrix/model
http://blogs.msdn.com/b/shitanshu/archive/2010/03/13/how-to-implement-role-based-security-model-in-configuration-manager-2007-part-2.aspxDon
July 27th, 2011 7:25am
Hi,
Also you can take this as a referenc:
http://technet.microsoft.com/en-us/library/bb694228.aspx Operating System Deployment Security Best Practices and Privacy Information.
Classes and Instances for Object Security in Configuration Manager, contains a description of the class and instance rights available in the Microsoft System Center Configuration Manager 2007 console:
http://technet.microsoft.com/en-us/library/bb632791.aspx
Hope this will help.
Thanks
July 27th, 2011 10:18pm


