Authorize the RIS server and assign user permissions.
Enable RIS Server and User Accounts
Before a RIS server can begin responding to client requests, the server must be authorized within Active Directory. To install an image by using RIS, users must have the right to create computer accounts in Active Directory. The procedure is similar to the procedure for authorizing DHCP servers in the Active Directory and serves a similar function. Just as with a DHCP server, you don't want people installing RIS servers on
their own without permission from the organization. By requiring Active Directory authorization, you control what servers can be used to automate installation of Windows 2000 Professional.
Authorizing RIS server
Requiring RIS servers to be authorized in Active Directory prevents someone from setting up an additional RIS server that could install unauthorized images on client computers and then join those computers to the forest. You authorize the RIS server as you would a DHCP server in the DHCP console. It's important to remember that to authorize a DHCP or RIS server, a user must be a member of the Enterprise Admins group,
which exists in the root domain of the forest. The following Slide Show demonstrates how to authorize a RIS server in Active Directory:
Assigning User Permissions
You can assign users the permissions to create computer objects anywhere in the domain or in a specified organizational unit (OU). To assign users the permissions to create computer objects in Active Directory, use Active Directory Users and Computers. Right-click the domain or OU where you want to allow users to create computer objects, and then start the Delegation of Control wizard by clicking Delegate Control as shown in the image below.
The next lesson provides an overview of configuring remote installation options and how to configure client and computer names and locations.