I don't think you can. Normally the advice would be "use domain local groups to assign your permissions to objects", but for the handful of magic groups that's not really an option.

I've got a situation where my Domain1 admin account is a member of Domain2\Administrators (which is Domain Local), and for the most part admin stuff is pretty seamless. There are some things I still need to use an account in Domain2 for though. I've tried not to figure out exactly where the boundaries lie, but generally if I need to run one of the Active Directory control panel things I'll log in as a Domain2 account.