• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 928
  • Last Modified:

Can I resolve the AD group name base on SID if it has been deleted?

Hi,

I'm seeing only the SID number in the folder security permissions. I believe it is because the group has been deleted from the AD. Can I still find out the name of the group that was deleted based on the SID alone?

0
Decarn
Asked:
Decarn
  • 2
  • 2
1 Solution
 
KenMcFCommented:
If the object is still tombstoned you can get the name. One way would be to use ADFind from joeware.net

an example would be

adfind -showdel -f objectsid=S-1-5-21-1140794203-5324537521-3023241126-134678 name
0
 
DecarnAuthor Commented:
Is there any other way without a third party tool? Preferably Microsoft tools.
0
 
KenMcFCommented:
You can use PsGetSid from the sysinternals suite

http://technet.microsoft.com/en-us/sysinternals/bb897417.aspx
0
 
DecarnAuthor Commented:
Thanks!
0

Featured Post

Concerto's Cloud Advisory Services

Want to avoid the missteps to gaining all the benefits of the cloud? Learn more about the different assessment options from our Cloud Advisory team.

  • 2
  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now