An Active Directory (AD) user other than the Administrator account is required to be able to perform a delegated join to a domain. What permissions are required for a user to be able to do so?
Permissions need to join to domain when the Computer account alreadys exists in AD:
Required
Object permissions:
ResetPassword
Note, by default preferredOU is filtered by the Microsoft admin tools. To disable this please see http://support.microsoft.com/kb/296490
© 2025 One Identity LLC. ALL RIGHTS RESERVED. 利用規約 プライバシー Cookie Preference Center