Permissions to Create & Edit GPOs in Specific OU

Copper Contributor

In Windows Server 2019, user x1 has permissions assigned to OU1. There are 10 computers and 10 users in OU1. However, user x1 does not have Windows Server 2019 administrator permissions. I would like to allow user x1 to create and edit Group Policy Objects (GPOs) in OU1 from a Windows 10 machine. How to do it?

I would appreciate any help in resolving this issue.

1 Reply

@flakpon 
You have to delegate on "Group Policy Object" and on the OU.

L_Youtell_974_1-1717802581202.png

 

 

Delegation on  "Group Policy Object"  allow the user to create the GPO and delegation on the OU allow the user de link the GPO.