Fields appear greyed out for the technician while creating or modifying Active Directory users using ADManager Plus

Last updated on:

Issue description

In ADManager Plus, help desk technicians may notice that certain user fields in the creation or modification template appear greyed out, restricting them from editing these attributes. However, these fields remain visible and editable when logged in as an administrator.

This behavior occurs because attribute-level delegation is in place, allowing administrators to precisely control which attributes technicians can manage. Attributes not included in the technician's delegated scope are automatically restricted, ensuring secure and controlled access to sensitive user information.

Possible cause

Insufficient delegation permissions: The assigned help desk role does not have access to modify or configure user attributes under bulk user creation/modification.

Prerequisites

Ensure you have super admin access to ADManager Plus.

Resolution

Step 1: Verify the technician's privileges

  1. Log into ADManager Plus using the admin account.
  2. Navigate to Delegation > Help Desk Roles.
  3. Identify the role assigned to the technician and click Edit.
  4. Navigate to the User Attribute Privileges tab.
    Accessing User Attribute Privileges while configuring a Help Desk Role in ADManager Plus
    Screenshot showing the Help Desk Role configuration page with the User Attribute Privileges option highlighted in ADManager Plus.
    Selecting user attributes for technician permissions in ADManager Plus
    The User Properties window in ADManager Plus with selectable user attributes and terminal services attributes for technician permissions.
  5. Under the Bulk User Modification tab, configure the necessary fields.
  6. Ensure that all required attributes are checked for modification.
    Configuring bulk user modification permissions in a Help Desk Role in ADManager Plus
    Screenshot showing Help Desk Role settings in ADManager Plus with bulk user modification permissions and attribute categories available for delegation.
  7. Click Save to apply the modifications.
  8. Have the technician log out and log back in to check if the fields are now accessible.

Tips

  • Verify delegation settings to ensure the technician's role has the necessary permissions.
  • Log out and log back in for the changes to take effect.

How to reach support

If the issue persists, contact our support team here.