Object

Name: Domain Controllers 
Path: OU=Domain Controllers,DC=adscribe,DC=com 
Created: 10/10/2006 
Modified: 10/10/2006 
Original USN: 4411 
Current USN: 4411 
GUID: {96828BC9-46A8-44F0-9CCB-4163CB9A1591} 

General

Description: Default container for domain controllers 
Street:  
City:  
State/Province:  
Zip/PostalCode:  
Country/Region:  
Managed by:  

Members

Name Type Description
  ADSCRIBE-SERVER  computer  domain controller description 
  subdomain controllers  unit   
Total: 2 member(s)

COM+

Partition set:  

Security

Owner: ADSCRIBE\Domain Admins 
Group: ADSCRIBE\Domain Admins 
Allow inheritable permissions from parent:  

Security permissions

Trustee Allow Access Inhereted Children
  NT AUTHORITY\Authenticated Users    Read permissions
List a tree of objects
Read the properties
Enumerate an object 
   
  ADSCRIBE\Domain Admins    Modify owner
Write permissions
Read permissions
Extended access rights
List a tree of objects
Write the properties
Read the properties
Validate property
Enumerate an object
Create child object 
   
  NT AUTHORITY\SYSTEM    Full control
Modify owner
Write permissions
Read permissions
Delete an object
Extended access rights
List a tree of objects
Delete a tree of objects
Write the properties
Read the properties
Validate property
Enumerate an object
Delete child object
Create child object 
   
  NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS    Read permissions
List a tree of objects
Read the properties
Enumerate an object 
   
  BUILTIN\Administrators    Modify owner
Write permissions
Read permissions
Delete an object
Extended access rights
List a tree of objects
Write the properties
Read the properties
Validate property
Enumerate an object
Create child object 
   
  ADSCRIBE\Enterprise Admins    Full control
Modify owner
Write permissions
Read permissions
Delete an object
Extended access rights
List a tree of objects
Delete a tree of objects
Write the properties
Read the properties
Validate property
Enumerate an object
Delete child object
Create child object 
   
  BUILTIN\Pre-Windows 2000 Compatible Access    Enumerate an object     
  BUILTIN\Pre-Windows 2000 Compatible Access    Read the properties    Remote Access Information 
  BUILTIN\Pre-Windows 2000 Compatible Access    Read the properties    General Information 
  BUILTIN\Pre-Windows 2000 Compatible Access    Read the properties    Group Membership 
  BUILTIN\Pre-Windows 2000 Compatible Access    Read the properties    Account Restrictions 
  BUILTIN\Pre-Windows 2000 Compatible Access    Read the properties    Logon Information 
  BUILTIN\Pre-Windows 2000 Compatible Access    Read permissions
List a tree of objects
Read the properties
Enumerate an object 
   
  BUILTIN\Pre-Windows 2000 Compatible Access    Read permissions
List a tree of objects
Read the properties
Enumerate an object 
   
  BUILTIN\Pre-Windows 2000 Compatible Access    Read the properties    Remote Access Information 
  BUILTIN\Pre-Windows 2000 Compatible Access    Read the properties    General Information 
  BUILTIN\Pre-Windows 2000 Compatible Access    Read the properties    Group Membership 
  BUILTIN\Pre-Windows 2000 Compatible Access    Read the properties    Account Restrictions 
  BUILTIN\Pre-Windows 2000 Compatible Access    Read the properties    Logon Information 
  BUILTIN\Pre-Windows 2000 Compatible Access    Read permissions
List a tree of objects
Read the properties
Enumerate an object 
   
  NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS    Read the properties    TokenGroups 
  NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS    Read the properties    TokenGroups 
  NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS    Read the properties    TokenGroups 
Total: 23 security permission(s)

Audit permissions

Trustee Access Inhereted Children Attribute
  Everyone  Modify owner
Write permissions
Delete an object
Delete a tree of objects
Delete child object
Create child object 
     
  Everyone  Write the properties       
  Everyone  Write the properties    OrganizationalUnit  GPLink 
  Everyone  Write the properties    OrganizationalUnit  GPOptions 
Total: 4 audit permission(s)

Group policy

Block policy inheritance:  

Group policy settings

Name Disabled Override
  Default Domain Controllers Policy     
Total: 1 group policy(s)

See Also

List of organizational units