Quote:
Originally Posted by owensct
His response to all the suggested solutions was Oh No!! You canxxx8217;t do any of these your network wonxxx8217;t be secure. His recommendation was that we create separate user accounts for IS staff for performing domain admin tasks and then use their current account for the berries and remove domain admin privileges.
|
This is EXACTLY what you should do.
It's called the Principle of Least Privilege, and it's basic admin stuff. Best practices for sure.
You would be wise to follow that advice.