Solved

Why can't i see groups in Windows 2003 DC

Posted on 2013-12-05
4
349 Views
Last Modified: 2013-12-05
I have a windows 2003 DC. I can search for groups and find them and even add users but I don't see them listed anywhere.   help?  where are they created and how can I see them?
0
Comment
Question by:Anthony H.
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
4 Comments
 
LVL 6

Expert Comment

by:Spyder2010
ID: 39699462
Assuming you are talking about Active Directory groups, you can use the tool 'Active Directory Users and Computers', located on the domain controller.  To run it, go to Start -> Administrative Tools -> Active Directory Users and computers.  It has a find function that will search and find groups based on names(or other criteria)
0
 

Author Comment

by:Anthony H.
ID: 39699468
yes. I figure that out. but how come I can't see the groups?
0
 
LVL 6

Accepted Solution

by:
Spyder2010 earned 500 total points
ID: 39699485
If you want to see the groups, you need to look in the correct container in Active Directory.  To see what container it is in:

1.) Open Active Directory Users and Computers(ADUC)
2.) Click on the 'View' menu, turn on Advanced Features
3.) Search for the group using the Find feature in ADUC.  Right Click on the group, go to Properties.  Look at the Object tab, it will show you where the group object is located in Active Directory.  Then using ADUC, you can browse the OU structure to the location of the group, and you should see it in ADUC.

** Just throwing this out there incase we are talking about two different things, you'll never see the group that you created on the domain controller itself... domain controllers do not have local user accounts, nor local groups.  All access to domain controllers is based on Active Directory, and viewed in ADUC, other than NTFS permissions on the file system.
0
 
LVL 6

Expert Comment

by:Spyder2010
ID: 39699494
I should probably follow up with ADUC is not the only means to view/modify Active Directory, but if you're new to AD, it is the most user friendly, and most accessible(seeing as you apparently already have access to a domain controller)
0

Featured Post

Is Your AD Toolbox Looking More Like a Toybox?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A company’s centralized system that manages user data, security, and distributed resources is often a focus of criminal attention. Active Directory (AD) is no exception. In truth, it’s even more likely to be targeted due to the number of companies …
Always backup Domain, SYSVOL etc.using processes according to Microsoft Best Practices. This is meant as a disaster recovery process for small environments that did not implement backup processes and did not run a secondary domain controller that ne…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

695 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question