Directory Console simulation — provision a group and assign members to streamline access control.
You administer the nwlogix.local domain for Northwind Logistics from the domain controller NWL-DC01. Resource permissions are currently assigned to people one account at a time, which is slow and error-prone. To simplify your access control lists, you will gather every shift-lead into a single group, then grant that group permission once.
Your tasks in the Directory Console:
LogisticsLeads with
Global scope and Security type.LogisticsLeads (each lives in a different organizational unit):
Create in: nwlogix.local / Users
A security group can be granted permissions on resources. A global group holds members from its own domain and can be used across the forest.