Solved

Delegate Control of an OU - Reporting?

Posted on 2013-06-19
7
311 Views
Last Modified: 2014-07-31
Is there any way or tool you know of that I can use to look through our AD structure to see what OU's have someone assigned as a Delegate Control?
0
Comment
Question by:iNetSystem
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
7 Comments
 
LVL 35

Expert Comment

by:Joseph Daly
ID: 39260565
Yes you can use dsrevoke with the /report command.

dsrevoke /report /domain:{domain name} {domain\username}
0
 
LVL 35

Expert Comment

by:Joseph Daly
ID: 39260571
0
 
LVL 57

Accepted Solution

by:
Mike Kline earned 500 total points
ID: 39260590
dsrevoke might not work depending on the version, good powershell work around here

http://blogs.technet.com/b/askds/archive/2011/10/28/friday-mail-sack-they-pull-me-back-in-edition.aspx#dsrevoke

There is another Microsoft tool that I've been using recently.   The AD ACL Scanner

http://blogs.technet.com/b/pfesweplat/archive/2013/05/13/permissions-in-ad-lost-control.aspx

Thanks

Mike
0
Online Training Solution

Drastically shorten your training time with WalkMe's advanced online training solution that Guides your trainees to action. Forget about retraining and skyrocket knowledge retention rates.

 
LVL 35

Expert Comment

by:Joseph Daly
ID: 39260614
That AD ACL scanner is pretty cool.
0
 
LVL 57

Expert Comment

by:Mike Kline
ID: 39260618
Agree, I think they should build that into AD but I think they are focusing all development time on the cloud :)

Thanks

Mike
0
 
LVL 18

Expert Comment

by:Sarang Tinguria
ID: 39261465
0

Featured Post

Visualize your virtual and backup environments

Create well-organized and polished visualizations of your virtual and backup environments when planning VMware vSphere, Microsoft Hyper-V or Veeam deployments. It helps you to gain better visibility and valuable business insights.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A company’s centralized system that manages user data, security, and distributed resources is often a focus of criminal attention. Active Directory (AD) is no exception. In truth, it’s even more likely to be targeted due to the number of companies …
Active Directory security has been a hot topic of late, and for good reason. With 90% of the world’s organization using this system to manage access to all parts of their IT infrastructure, knowing how to protect against threats and keep vulnerabil…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …

733 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question