JoMor79 Posted March 18, 2013 Report post Posted March 18, 2013 I have 1 primary SCCM 2012 server and I want different departments at different physical locations to have access only to their machines. Each department will do basically the same things, deploy OS, Apps, reports and use the same images and application packages. Dept1 should be able to view/modify Dept1 computers collection and not Dept2 or anything in all systems. Dept2 should view/modify Dept2 and nothing else, and so on. What I'm thinking is how you delegate access to specific OU's in active directory. Is this even possible? Quote Share this post Link to post Share on other sites More sharing options...