Solved

Report  on AD setting located on the General Tab

Posted on 2006-06-27
3
217 Views
Last Modified: 2012-03-15
Here is our situation:
When we setup our AD environment, old user accounts were carried over from our NT 4.0 domain. When those old IDs are viewed within Active Directory users and Groups, we have noticed something different between the old and newly created IDs.

On the general tab, there appears an icon in the shape of a head. Next to it is some text. This text is shown as the old NT domain user name if the account was carried over. If the account was created with AD, then it shows up as a full name.

Does anyone know what the setting is I can query with AD to obtain the value displayed next to the icon of the head? DisplayName, SAMaccountname, or principalname don't appear to be it.

Thanks,
Michael
0
Comment
Question by:MichaelCohoon
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 85

Accepted Solution

by:
oBdA earned 250 total points
ID: 16996636
That's the user's "Relative Distinguished Name"; together with the parent distinguished name, it forms the user's Distinguished Name, the user's location in ldap.
So if you see "John Doe" next to the head, and the user is in the OU "HR" in the domain "domain.local", the user's DN would be "cn=John Doe,ou=hr,dc=domain,dc=local".
To get a list of all users, open a command prompt and enter
dsquery user -limit 0
0
 

Author Comment

by:MichaelCohoon
ID: 17000658
Thanks oBdA! The terminology you gave me was just what I was looking for. We have a situation where we need to change some user's RDNs. So a bit of googling on your term helped me out. By selecting a user in AD, pressing F2 to rename, I can change the text displayed. Do you by any chance have an idea how I could do it via a script, in case we need to do this on a larger scale?

Thanks again.
Michael
0
 
LVL 85

Expert Comment

by:oBdA
ID: 17000962
Most of the attributes can be set and changed with the ds-tools (dsadd.exe, dsget.exe, dsmod.exe, dsmove.exe, dsquery.exe).
Renaming an AD object is done with dsmove:
dsmove "cn=John Doe,ou=hr,dc=domain,dc=local" -newname "Jane Doe"

The new command-line tools for Active Directory in Windows Server 2003
http://support.microsoft.com/?kbid=298882
0

Featured Post

Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The HP utility "HP Lights-Out Online Configuration Utility for Windows Server 2003/2008" could be of great use when it comes to remotely configure a HP servers ILO WITHOUT rebooting the server. We would only need to create and run scripts using thi…
While rebooting windows server 2003 server , it's showing "active directory rebuilding indices please wait" at startup. It took a little while for this process to complete and once we logged on not all the services were started so another reboot is …
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…
In this brief tutorial Pawel from AdRem Software explains how you can quickly find out which services are running on your network, or what are the IP addresses of servers responsible for each service. Software used is freeware NetCrunch Tools (https…

622 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question