问题描述
我们需要能够让本地管理员/域管理员(或)能够与已注册的最终用户分开登录.我们需要限制最终用户安装他们想要的任何东西.
We need the ability to have local admin's / domain admin's (either or) able to sign in separately from the enrolled end users. We need to limit the end user from installing whatever they want.
这是在Azure域上.
This is on an Azure domain.
推荐答案
这是在Azure域上.
This is on an Azure domain.
这是在一个已经存在的Azure域上.当前将设备注册到域的所有用户都将自动具有本地管理员权限.我们需要一种自动删除本地管理员权限的方法.如果他们需要安装某些东西,我们可以启动 远程控制会话,并以域管理员身份登录以安装所需的软件.类似于典型的前提AD管理员/用户角色.
This is on an already existing Azure domain. All users currently enrolling a device to the domain have local administrator rights automatically. We need a way to automate the removal of local admin rights. And if they need something installed, we can then initiate a remote control session and log in as a domain administrator to install the required software. Like the typical on premise AD Admin/user roles.
这篇关于Azure域加入了计算机管理员/标准用户的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持!