Solved

Why did Microsoft default users and computers in AD to containers?

Posted on 2011-02-24
5
328 Views
Last Modified: 2012-05-11
Had an interesting question asked of me by another person today... and either Google didn't have a great answer or my Google fu is down.

Anyways, the question is why did Microsoft choose Containers instead of OUs for the default location of computers and users in AD.
0
Comment
Question by:Sommerblink
  • 3
5 Comments
 
LVL 74

Accepted Solution

by:
Glen Knight earned 50 total points
Comment Utility
That's a good question, and in fact if you look at Small Business Server you will find that if you use the wizards that users, computers and groups are put in to Organisational Units instead of containers.

My take on this, is that a "vanilla" install of Active Directory in a non-SBS environment is there to be designed.  They setup the basics that let you get started.

You then setup your organisational structure and place users, computers, contacts, groups in to OU's specific to your organisation and if required setup delegation (can only be done on OU's)

It's all part of the "management" of Active Directory.  You are supposed to configure it, but if you chose not to, it will still work ;)
0
 
LVL 70

Expert Comment

by:KCTS
Comment Utility
Why is always a difficult if not impossible question to answer
0
 
LVL 12

Author Comment

by:Sommerblink
Comment Utility
The only thing that I can think of is back in the NT days, when companies were migrating from NT to Active Directory and this was in place as some sort of backwards compatibility reason.. but NT was way before my time...

And demazter, I have long held the view that there are MANY things in the vanilla server load that need to be tweaked, such as things like turning on auditing for authentication failures... which SBS takes care of for you (by default)... therefore, to install the straight OS, you need to know what you're doing.
0
 
LVL 74

Expert Comment

by:Glen Knight
Comment Utility
That's the whole point.  SBS is designed to be self maintained.

Non-SBS installs are supposed to be "tweaked" or customised to meet the needs of the organisation.  They leave a vanilla install so you HAVE to set it up if you want full functionality.
0
 
LVL 74

Expert Comment

by:Glen Knight
Comment Utility
Oh and of course if they configure containers for Room1 and Room2 for example, room 1 for my might be a kitchen, and for you a toilet.

So...this is more than likely why they don't make OU's ;)
0

Featured Post

Do You Know the 4 Main Threat Actor Types?

Do you know the main threat actor types? Most attackers fall into one of four categories, each with their own favored tactics, techniques, and procedures.

Join & Write a Comment

The saying goes a bad carpenter blames his tools. In the Directory Services world a bad system administrator, well, even with the best tools they’re probably not going to become an all star.  However for the system admin who is willing to spend a li…
Starting in Windows Server 2008, Microsoft introduced the Group Policy Central Store. This automatically replicating location allows IT administrators to have the latest and greatest Group Policy (GP) configuration settings available. Let’s expl…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now