Groups > Novell > Identiry Manager Engine drivers > Re: Question about the AD account rights




Question about the AD account rights

Question about the AD account rights
Thu, 15 May 2008 15:36:02 GMT
Can someone explain the reason why the AD admin account needs
Replicating Directory Changes rights?  The domain admin I'm dealing
with is paranoid and even though I was able to convince him that the
account does not need full Administrator access, he still has
questions.


-- 
T-MAN
------------------------------------------------------------------------
T-MAN's Profile: http://forums.novell.com/member.php?userid=10343
View this thread: http://forums.novell.com/showthread.php?t=328095
Post Reply
Re: Question about the AD account rights
Thu, 15 May 2008 15:38:27 GMT
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Out of curiosity do you, or your admin, have the link to a doc that
discusses exactly what that privilege means?

Good luck.




T-MAN wrote:
| Can someone explain the reason why the AD admin account needs
| Replicating Directory Changes rights?  The domain admin I'm dealing
| with is paranoid and even though I was able to convince him that the
| account does not need full Administrator access, he still has
| questions.
|
|
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFILFjw3s42bA80+9kRAg/hAJ9IIVpnO37+U+y3qA0A0BbESpjjSgCfaIRK
ShfQmFJYM0hGk5aO/7XtEe4=
=A9Pq
Post Reply
Re: Question about the AD account rights
Thu, 15 May 2008 19:46:02 GMT
Ouch! No, I don't have that link. I was looking at the AD Driver
Administration guide which listed the rights that are needed, but did
not go into more detail explaining why they are needed. Guess I'll have
to do some research.

ab@novell.com;1558266 Wrote: 
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> Out of curiosity do you, or your admin, have the link to a doc that
> discusses exactly what that privilege means?
> 
> Good luck.
> 
> 
> 
> 
> T-MAN wrote:
> | Can someone explain the reason why the AD admin account needs
> | Replicating Directory Changes rights?  The domain admin I'm dealing
> | with is paranoid and even though I was able to convince him that the
> | account does not need full Administrator access, he still has
> | questions.
> |
> |
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v1.4.2 (GNU/Linux)
> Comment: Using GnuPG with Mozilla - 'Enigmail: A simple interface for
> OpenPGP email security' (http://enigmail.mozdev.org)
> 
> iD8DBQFILFjw3s42bA80+9kRAg/hAJ9IIVpnO37+U+y3qA0A0BbESpjjSgCfaIRK
> ShfQmFJYM0hGk5aO/7XtEe4=
> =A9Pq
> -----END PGP SIGNATURE-----


-- 
T-MAN
------------------------------------------------------------------------
T-MAN's Profile: http://forums.novell.com/member.php?userid=10343
View this thread: http://forums.novell.com/showthread.php?t=328095
Post Reply
about | contact