Allow limited administrator with read-only group rights to remotely run commands
I want to grant my support personnel read-only group rights and command rights to scan and update content.
SEPM does not appear to support this scenario due to the way the limited administrator permissions were designed. When a limited administrator account is created and configured with the aforementioned settings, it has read-only visibility to clients in groups, but cannot run commands on clients. The "Run Command on Clients" option in the right-click menu for clients is grayed out.
This seems to be a design deficiency in the behavior of permissions. I would like to see the SEPM product changed so that, for limited administrator accounts, command rights will take precedence over group rights.
I have attached screenshots of the account settings and resulting inability to run commands.