Your network contains an Active Directory domain named contoso.com. The domain contains 100 user
accounts that reside in an organizational unit (OU)named OU1.
You need to ensure that a user named User1 can linkand unlink Group Policy objects (GPOs) to 0U1.
The solution must minimize the number of permissions assigned to User1.
What should you do?
A.
Modify the permission on the \\Contoso.com\SYSVOL\Contoso.com\Policies folder.
B.
Run the Delegation of Control Wizard on the Policies container.
C.
Run the Set-GPPermissioncmdlet.
D.
Run the Delegation of Control Wizard on OU1.
Explanation:
Delegation of Control Wizard
The following are common tasks that you can select to delegate control of them:
Manage Group Policy links
Note: More tasks:
Create, delete, and manage user accounts
Reset user passwords and force password change at next logon
Read all user information
Modify the membership of a group
Join a computer to a domain
Generate Resultant Set of Policy (Planning)
Generate Resultant Set of Policy (Logging)
Create, delete, and manage inetOrgPerson accounts
Reset inetOrgPerson passwords and force password change at next logon
Read all inetOrgPerson information
Delegation control wizard runs on OU
D.
D