Solved

AD Security Groups Don't Display Members

Posted on 2008-10-22
3
449 Views
Last Modified: 2008-10-28
I just took over a new company with a 2003 Active Directory domain. I'm trying to clean up their Active Directory structure and I found a weird quirk. If I open the properties of a Security Group, it doesn't list the members. If I open the properties of a user, it will show me what group they are a member of.  But if I create a new group, it works normally. Any help on correcting this would be appreciated.
0
Comment
Question by:NetworkSolutions
  • 2
3 Comments
 
LVL 12

Expert Comment

by:RobinHuman
ID: 22781253
In the ADUC, in the actions menu (at the top) make sure that advanced options is set.
0
 

Author Comment

by:NetworkSolutions
ID: 22781329
Advanced Features was not checked, is now, and still doesn't work.
0
 

Accepted Solution

by:
NetworkSolutions earned 0 total points
ID: 22786280
I figured it out myself. When I clicked on the Permissions tab of the group's properties, I got this error:

Windows can not edit the permissions on 'Group Name' because they have been written in a nonstandard format by another application. To enable editing, you must use the application to restore the permissions to a standard format.

I Googled the error, which led me here:
http://windowsitpro.com/article/articleid/74811/jsi-tip-3493-windows-can-not-edit-the-permissions-on-group-name-because-they-have-been-written-in-a-nonstandard-format.html

Which then led me here:
http://support.microsoft.com/?kbid=253827

After reading both articles, I simply logged on to my Exchange server, went into ADUC, right clicked on the group, Chose Exchange Tasks, and then unhid Group membership.
Simple.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article outlines the process to identify and resolve account lockout in an Active Directory environment.
This article describes my battle tested process for setting up delegation. I use this process anywhere that I need to setup delegation. In the article I will show how it applies to Active Directory
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

821 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question