Our desktop estate as been protected by Central for some months but we've recently started testing some of the Microsoft Windows server estate. We're having a number of issues currently as the Desktop estate is managed by a different team from the server estate and there's a risk one party or the other could make a change that impacts each other.
It looks like the role based access is fairly limited and we practically need Admin rights to be able do the tasks we need to. Could somebody help answer/clarify these queries please?
Is there a way to provide console/admin access just over the "Server" elements, more specifically?
1. What permission(s) are needed to be able to add/amend Groups?
2. What permission(s) are needed to be able to add/amend/assign policies?
Is there a way to separate the "Admin" tasks for example Desktop Admins are only able to amend/assign policies to the desktop machines and Server Admins are only able to amend/assign policies to the server machines?
Thanks in advance for any assistance/responses.
This thread was automatically locked due to age.