Your company has four offices. The network contains a single Active Directory domain. Each office has a domain controller. Each office has an organizational unit (OU) that contains the user accounts for the users in that office. In each office, support technicians perform basic troubleshooting for the users in their respective office. You need to ensure that the support technicians can reset the passwords for the user accounts in their respective office only. The solution must prevent the technicians from creating user accounts. What should you do?
A.
For each OU, run the Delegation of Control Wizard.
B.
For the domain, run the Delegation of Control Wizard.
C.
For each office, create an Active Directory group, and then modify the security settings for each group.
D.
For each office, create an Active Directory group, and then modify the controlAccessRights attribute for each group.