Domain Local Can Include Members From
These groups can include users computers and other global groups from the same domain.
Domain local can include members from. Domain local groups in the same domain in native mode only. A domain local group can include members of any type in the domain and members from trusted domains. A domain local group can include members of any type as well as members from trusted domains. Domain local domain local groups can be applied anywhere in the domain and can be useful for managing resource permissions.
Members of the account operators group cannot manage the administrator user account the user accounts of administrators or the administrators server operators account operators backup operators or print. You can use them to organize users who have similar functions and therefore similar requirements on the network. These groups can include users computers and groups from any domain in the forest. Global groups within the forest.
If the domain local group does have other domain local groups as members then these must be removed from the membership before a conversion is made. Members of this group can create and modify most types of accounts including those of users local groups and global groups and members can log in locally to domain controllers. Members from any domain may be added to a domain local group. The domain local scope can contain user accounts universal groups and global.
Domain local groups can be converted to a universal group provided that there are no other domain local groups in its membership. Domain local groups can contain members from any domain in the forest. Universal groups within the forest in native mode only. For example suppose you need access management for a collection of folders on one or more servers that contain information for managers.