Hi everyone,
There may be another way of doing this but I'd just like everyones thoughts on this.
We currently have static groups which control serialisation of various applications. Second line managers want to be able to add/remove devices to this group as they see fit.
We assign privileges through AD security groups and they all belong to a 'Support Managers' group. I can grant that group access to update static groups but the problem is that then gives them access to every static group we have.
Is it possible to restrict access down to particular static groups or is that a possible feature request?
Also with regards to privileges, how does it work if you are a member of 2 privilege groups? Do you get a combination of both privilege sets or do you get the highest from both?