SCCM Security role for a single collection access

Amnon Feiner 25 Reputation points
2025-03-07T23:41:04.05+00:00

I am trying to create a security role for accessing a single user collection in SCCM and fully manage by AD security group.

Microsoft Security | Intune | Configuration Manager | Application
0 comments No comments
{count} votes

Accepted answer
  1. AllenLiu-MSFT 49,316 Reputation points Microsoft External Staff
    2025-03-10T05:57:19.62+00:00

    Hi, @Amnon Feiner

    Thank you for posting in Microsoft Q&A forum.

    You may follow this steps:

    1. Go to the Administration workspace.
    2. Expand Security, and then select the Administrative Users node.
    3. Add the AD security group as an administrative user.
    4. Add the security roles.
    5. Choose Only the instances of objects that are assigned to the specified security scopes or collections.
    6. Remove collections All Systems and All Users and User Groups.
    7. Add the single user collection you want to manage and click OK.

    If the answer is the right solution, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Add comment". After the way you tag questions on Q&A is updated, for any "Microsoft Configuration Manager" related problem, you can tag it with "Microsoft Intune", and then "Microsoft Configuration Manager" as the child tag.


0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.