By default, if an Active Directory Group is a Site Collection Administrator, ControlPoint does not look inside the group to determine if a logged in user is a member of that group in order to calculate permissions.
ControlPoint Application Administrators can, however, have ControlPoint look for Site Collection Administrators within Active Directory groups by changing the ControlPoint Setting Look for Site Collection Admin Users in Active Directory Groups (SiteAdminAD) from false to true.
NOTE: Be aware that if ControlPoint is required to look for users within Active Directory groups, processing time may increase.
© 2025 Quest Software Inc. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center