Hello,
We have 5 departments in our single domain forest and some departments do not want other departments to see their Group Policies, which makes delegation complicated. Is it possible to create sub OUs under the System\Policies folder and assign permission to departmental admins to their folder and deny them read to the other folders? Central IT would control linking of policies.
If anyone knows another way to allow departments to see only their own GPOs or a useful 3rd party tool, I'd love to know.
Thanks,
Robert