The following examples demonstrate sample commands for common scenarios.
To verify that the MYCOMPANY\JSmith user account has read permissions on the Deleted Objects container in the hou.mycompany.com domain, enter:
DRADELOBJSUTIL /DOMAIN:HOU.MYCOMPANY.COM /VERIFY:MYCOMPANY\JSMITH
To delegate read permissions on the Deleted Objects container in the MYCOMPANY domain to the MYCOMPANY\DraAdmins group, enter:
DRADELOBJSUTIL /DOMAIN:MYCOMPANY /DELEGATE:MYCOMPANY\DRAADMINS
To delegate read permissions on the Deleted Objects container and the Synchronize directory service data user right in the MYCOMPANY domain to the MYCOMPANY\JSmith user account, enter:
DRADELOBJSUTIL /DOMAIN:MYCOMPANY /DELEGATE:MYCOMPANY\JSMITH /RIGHT
To display security settings for the Deleted Objects container in the hou.mycompany.com domain using the HQDC domain controller, enter:
DRADELOBJSUTIL /DOMAIN:HOU.MYCOMPANY.COM /DC:HQDC /DISPLAY
To remove read permissions on the Deleted Objects container in the MYCOMPANY domain from the MYCOMPANY\DraAdmins group, enter:
DRADELOBJSUTIL /DOMAIN:MYCOMPANY /REMOVE:MYCOMPANY\DRAADMINS