AD Schema Attributes »
ms-DS-Allowed-To-Delegate-To attribute
ms-DS-Allowed-To-Delegate-To attribute
| LDAP Name | msDS-AllowedToDelegateTo |
| Data type | Unicode String |
| Single value or multi-value | Multi Value |
| Attribute-Id | 1.2.840.113556.1.4.1787 |
| CN | ms-DS-Allowed-To-Delegate-To |
| Applies to | Windows Server 2003 and higher |
| For more information | msDS-AllowedToDelegateTo - MSDN |
Purpose: This attribute is used to configure services to fetch the respective service tickets which are used for constrained delegation.
Did you know that ADManager Plus enables you to:
- Delegate Active Directory, Exchange, Office 365 and G Suite management tasks to non-admin users easily without elevating their AD permissions.
- Limit scopes specific to organizational units (OUs) or groups when delegating tasks, and more.
Download the 30-day free trial of ADManager Plus to try out the features in your AD instance at your convenience.
Script-free, automated AD management and reporting
ADManager Plus, an identity governance solution for Active Directory, Microsoft 365, and Google Workspace, offers features for automating the bulk creation and modification of user accounts via CSV files and intelligent templates. Generate and schedule more than 200 preconfigured reports on users; export them in CSV, PDF, HTML, XLSX, and CSVDE formats; and do even more.
Unravel end-to-end Active Directory management with ADManager Plus
AD User Management / Reports
Active Directory Reporting
Active Directory Management
Related Products
-
- ADManager Plus Active Directory Management & Reporting
- ADAudit Plus Hybrid AD, cloud, and file auditing and security
- EventLog Analyzer Real-time Log Analysis & Reporting
- ADSelfService Plus Self-Service Password Management
- AD360 Integrated Identity & Access Management
- Log360 Comprehensive SIEM and UEBA
- AD Free Tools Active Directory FREE Tools
