Using LDAP with DirectoryEntry or PrincipalContext in C# worked fine, I could read AD, change properties, yet when creating users or groups I got Access Denied. Even when I use the Administrator account to login on AD through my application.
Going to the AD Machine and use the same credentials I was able to create groups/users... So what is going wrong here?
与恶龙缠斗过久,自身亦成为恶龙;凝视深渊过久,深渊将回以凝视…