$PMUsersDN = $(Get-Group "PMUsers").Identity.DistinguishedName New-ManagementScope -Name "PMImpScope" –RecipientRestrictionFilter "MemberOfGroup -eq '$PMUsersDN'" New-ManagementRoleAssignment –Name:PMImpMgmtRole –Role:ApplicationImpersonation –User:PMSyncService –CustomRecipientWriteScope:PMImpScope Get-ManagementRoleAssignment -RoleAssignee PMSyncService -Delegating $false | Format-Table -Auto Name,Role,RoleAssigneeName,RoleAssigneeType,CustomRecipientWriteScope Get-ManagementRoleAssignment -RoleAssignee PMSyncService -Delegating $false | Format-Table -Auto Name,CustomRecipientWriteScope,Role Удаление Get-ManagementRoleAssignment | Where {$_.Role -eq “ApplicationImpersonation” -and $_.RoleAssigneeName -eq “ Your_User_Account “} | Remove-ManagementRoleAssignment $DL_ktalk_fbk-corp_GROUPDN = $(Get-Group "DL_ktalk_fbk-corp_USERS").Ident...