How to export users from active directory 2003??

Posted on 2008-10-14
Last Modified: 2008-10-14
I have about 1600 users and i need to get a copy of their usernames and full names from active directory.  how can i export a list like this??
Question by:amoos
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
LVL 11

Expert Comment

ID: 22711734
CSVDE is what you are after for this, this is a good link to work with
LVL 13

Expert Comment

ID: 22711755
Hello, you can use a command like the following one:

You can find more of the options that can be displayed by entering the command DSGET USER /?
There is a list of attributes like -UPN, -SAMID, -OFFICE etc.

Don't forget to replace the string DC=YOURDOMAIN,DC=COM with the real name of your domain.
Also if you want to get a textual output, you can redirect it to a text file like that:


LVL 18

Expert Comment

ID: 22712894
1.You can install the Windows 2003 support tools (free download from Microsoft Website) and use DSQUERY USER  OU=Test,dc=TEST,dc=LOCAL  -O UPN

2.If you have powershell you can install the quest tools for free

Command would be
Get-QADGroup "Group Name" | %{$_.Members}

3.Check out here:


c:\>ldifde -d "BASE DN" -r "(objectClass=user)" -f export.ldf
c:\>ldifde -i -f inport.ldf

c:\>csvde -d "BASE DN" -r "(objectClass=user)" -f export.csv
c:\>csvde -i -f inport.csv
You can also use dsquery,dsget,dsadd,dsmod for scripting.
ref the help url for CSVDE

This will be a simple export
CSVDE -d "OU=Newport,DC=cp,dc=com" -f file.csv.
Office 365 Training for Admins - 7 Day Trial

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.


Author Comment

ID: 22715996
all-right it seems to work fine and is giving me the results that i am looking for but since i have 1600 users i need this information for it is giving me a limit error.  below is the error i am getting

Dsquery has reached the default limit of 100 results to display; use the -limit option to display more results

so i add at the end of the query -limit 2000 and then it gives me the error again.  how do i fix this???  awesome help
LVL 18

Expert Comment

ID: 22716074
1.I think their a limitation on number of objects that you can query from the DC in a single go.This has been done purposefully keeping mind about the performance of the DC.Below article is somewhat similar to your situation.But I wouldn't recommend you to change the registry

but you can try this,
DSQUERY USER  OU=Test,dc=TEST,dc=LOCAL  -limit 2000 >C:\UsersCN.txt


Author Comment

ID: 22716085
also how would i write a query to get members in a particular OU??  awesome help
LVL 18

Expert Comment

ID: 22716095
or try this,
DSQUERY USER  OU=Test,dc=TEST,dc=LOCAL  -limit 0 >C:\UsersCN.txt

You have to use the limit option with 0 (zero):

-limit <NumObjects>         Specifies the number of objects matching the
                            given criteria to be returned, where <NumObjects>
                            is the number of objects to be returned.
                            If the value of <NumObjects> is 0, all
                            matching objects are returned. If this parameter
                            is not specified, by default the first
                            100 results are displayed.
LVL 18

Expert Comment

ID: 22716121
You can probably user CSVDE command,
 For example, suppose you only wish to export one OU and not the whole Active Directory domain.  

Command: CSVDE -d "OU=ou name,DC=cp,dc=com" -f Newport.csv.
What the -d filter does is focus the export on one particular area.
If you try this filter, make sure you substitute your OU for ou name and your domain for dc=cp.  Observe carefully the syntax with those speech marks and commas between the elements.  Avoid the trap of being so concerned with the -d switch that you forget the -f filename.csv.

Ref the below links for more options,


Author Comment

ID: 22716166
awesome.  i used the query DSQUERY USER  OU=Test,dc=TEST,dc=LOCAL  -limit 0 >C:\UsersCN.txt  and it worked fine but the results that were displayed were in the format of cn=username,ou=ou name,dc=etc...  how do i get it to display the same results as if i used the dsget user command??
LVL 18

Expert Comment

ID: 22716262
press Ctrl-a and copy all the contents from the text file and paste in a excel file....there you can edit the required information (if you are good in excel)

Author Comment

ID: 22716405
awesome it all works.  now the last question is when i run these queries do any of the queries delete or mess up anything in active directory??  meaning if i run these queries on the live DC is it going to delete my AD??
LVL 18

Accepted Solution

sk_raja_raja earned 500 total points
ID: 22716655
No not at all.....all these queries are safe ro run, but please make sure you understand the query syntax and its switches and then executed any commands against AD...its a good practice to follow

Author Comment

ID: 22716755
awesome thank you so much for your help

Featured Post

The Eight Noble Truths of Backup and Recovery

How can IT departments tackle the challenges of a Big Data world? This white paper provides a roadmap to success and helps companies ensure that all their data is safe and secure, no matter if it resides on-premise with physical or virtual machines or in the cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A company’s centralized system that manages user data, security, and distributed resources is often a focus of criminal attention. Active Directory (AD) is no exception. In truth, it’s even more likely to be targeted due to the number of companies …
A hard and fast method for reducing Active Directory Administrators members.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.

751 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question