Спасибо за подсказку, вот поискал и нашел как создать container administrators.
1. Create an Organizational Role object in the appropriate container.
2. Make the Organizational Role object a trustee of the container.
3. Assign the appropriate NDS rights to administer the container.
4. (Optional) To limit the administrator's ability to grant rights to the container or set the container IRF, grant the Organizational Role the Read property right to the Object Trustees List (ACL) property.
5. Assign any necessary rights to the file system that pertain to a container administrator.
6. Make the appropriate User objects occupants of the Organizational Role object.
"Если у Вас долго ничего не получается, прочтите инструкцию
"