| 1  | Open the Group and User Management module. | 
| 2  | Open the Tasks tab. | 
| 3  | Click Bulk Change Members. | 
| NOTE: From the Browse tab, select Tools | Bulk Change Group Contents, or right-click in the Navigation or Objects pane, and choose Bulk Change Group Contents. | 
| 4  | Click Add to select computers. | 
| 6  | Click Add to select the members to add or remove. | 
| • | 
| • | To remove the selected members from the selected groups, click Remove Members. | 
| 1  | Open the Group and User Management module. | 
| 2  | Open the Tasks tab. | 
| 3  | Click Clear Local Admin. | 
| Right-click in the Navigation or Objects pane, and choose Bulk Remove from Local Administrators. | 
| 4  | 
| Select to produce a report of the domain users that were removed in the process. In the Report file path box, type a path to where you want to place the report file, or click Select file path to choose the path. | |
| Select to just produce a report without actually removing the domain users. You can examine the report prior to completing the process. In the Report file path box, type a path to where you want to place the report file, or click Select file path to choose the path. NOTE: If you select Produce report only, domain users are not removed from the local Administrators group when you click Remove all domain users. | 
| 1  | Open the Group and User Management module. | 
| 2  | Open the Tasks tab. | 
| 3  | Click Delete User/Group. | 
| 4  | Click Add to select the accounts to delete. | 
| 5  | Click Delete. | 
| NOTE: From the Browse tab, select a type of group or user in the Navigation pane, select one or more groups or users in the Objects pane, select Tools | Delete. Click  | 
Before creating a Group Managed Service Account, run the following PowerShell cmdlet:
Add-KdsRootKey -EffectiveTime ((get-date).addhours(-10))
| 1  | Open the Group and User Management module. | 
| 2  | Open the Tasks tab. | 
| 3  | 
| 4  | Type a domain name, or click Select scope to select a domain. | 
| 5  | 
| NOTE: To open the New Managed Service Account box on the Browse tab, select Domain Managed Service Accounts in the Navigation pane, and select Tools | New. Click  | 
| 7  | Type the SAM-Account-Name for the new Managed Service Account in the Account Name field. | 
| 10  | Click Create. |