I'm looking to grant the following permissions to the "Deleted Objects" container in AD for JUST child computer objects:
- List the child objects of the object
- Read a property
- Write to a property
Normally I'd just open up ADUC, pull up advanced security permissions, and then set the permissions for descendant computer objects, but the "Deleted Objects" container isn't exposed in ADUC. Does anyone know of a good tutorial for making this modification?
zarberg@gmail.com