Deleting computer roles

If you use computer role assignments to control access to a computer, the following permissions are required to delete computer roles:

Select this target object To apply these permissions

msDS-AzScope

This object is listed under a globally unique identifier (GUID) for the Authorization object.

Click the Properties tab and select Allow to apply the following properties to this object only:

  • Read Name
  • Read name
  • Read displayName
  • Allow Delete
  • Allow Delete Tree