Hi all, I have one master domain controller called "domain.com" and have two child domain called "child1.domain.com" and "childtwo.domain.com" and also joined the windows 10 machine to the master domain controller "domain.com" and then i have add users on the client windows machine by choose the location "domain.com" or its child domain.
My question is, for domain based i need give promote any user from domain.com as admin role in client windows 10, same as to other sub-domain users. If any domain based admin user can't delete the other domain's admin and users.
Which mean domain based privileges.
