Hi all: I did not realize that using DLU in a mixed eDir/AD environment is a no-no on clients running Windows 7. So I have removed the DLU policy, but now I need to figure out how to replace some of it's functionality. Specifically, I need my users to run as Administrators (or possibly Power Users) as we have an application that MUST have elevated privileges.

Here is what I have:
Workstations running Windows 7 64-bit, Novell Client 2 SP3 and ZCM 11.2.4
OES servers run OES11 SP1
Active Directory runs on Windows server 2008
Passwords get sync'ed via Identity Manager eDir -> AD

So I have been researching this issue but I have found a solution.

All help greatly appreciated. Chris.