I have a magic triangle configuration. The mac server is currently configured with payloads to restrict system preferences, mount drives, printers, etc. Currently, when a user with Active Directory admin privledges logs in, it will allow me to see all system preferences but not with full admin rights. Before profile manager was configured, it just gave AD users full admin rights. It appears that directory users are in a "managed" state. I authenticated under root and it indicated that the managed user would become unmanaged as soon as I give that AD user admin rights. However, as soon as that happens, the ability to see any restricted System Preferences icons go away. Is there a way to control that behavior, or should I just stick to authenticating under root?
Thanks