If managing Active Directory using Windows Powershell® is making you feel like you stepped back in time, you are not alone. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why.
ADCleanup is my implementation of a set-and-forget Active Directory cleanup tool. Once this tool is implemented correctly, you never need to worry about dormant accounts ever again.
2) Create a location in Active Directory to store inactive user accounts and record the distinguished name (DN).
3) Create a location in Active Directory to store inactive computer accounts and record the distinguished name (DN).
4) Run Configurator.exe (Configurator Editor).
a) On the Encrypt tab, enter the password for the account that will be performing the cleanup task. Encrypt it with key 9hOK7AtlGOCRyBtBdhF9pnTQuk8ES176 and record encrypted password
b) On the Settings tab, enter the fully qualified domain name, cleanup account user name and the encrypted password recorded in step 4a
c) Set userCleanup to true to enable the process to clean up user accounts. Set user cleanup parameters
d) Set userDisabledOUto value recorded in step 2
e) Set computerCleanup to true to enable the process to clean up user accounts. Set computer cleanup parameters
f) Set computerDisabledOU to value recorded in step3
g) On the userExcludedDNs tab, specify any distinguished name of an organizational unit that should be excluded from the cleanup process
g) On thecomputerExcludedDNstab, specify any distinguished name of an organizational unit that should be excluded from the cleanup process
h) Schedule ADCleanup.exe to execute via a scheduled task. Upon every execution, the tool will clean up user and computer objects as per your configuration
Using this process, (or one similar) will keep Active Directory clean from the unused computer and user objects, and increases server security in the process.
Please do not forget to press the "Thumb's Up" button if this article was helpful and valuable for EE members.
It also provides me with positive feedback. Thank you!
Add your voice to the tech community where 5M+ people just like you are talking about what matters.