At a customer where I went a few weeks ago there was a need of an extra Configuration Manager 2012 role which only had the rights to import computers. It struck me that there was no default role provided which provided the necessary rights.
This security role would then be assigned to someone who would import the computers to run OSD.
This is the way I’ve done it.
– First of all I imported the Computer Import Manager role under the form of an .XML file which can be found here. The .XML file can be downloaded at the bottom of that webpage.
– The default behavior of this role is to only allow computer import in the All Systems collection. If the OSD task sequences are targeted to other collections then the All Systems collections this behavior should be extended so the user is able to import computer to other collections. This is done by editing the newly created security role and under Collection add the Modify resource right like shown below. Click Apply and OK.
– When the console is now opened with a user that has this Computer Import Manager role associated, the console looks as follows:
When the same role also needs the rights to delete computers from collection , just add the additional right: Collection –> Delete Resources in the same way the previous rights were added.
After all modifications I’ve exported the Computer Import Manager security role so I can just reuse it at other customers when needed.
Hope this helps.