Solved

Searching Windows Active Directory

Posted on 2014-09-03
11
117 Views
Last Modified: 2014-11-05
Over the past week or so, every time I try to search for a user in AD, it can't find the user unless I use last name only or login id.  I am almost positive that I used to be more flexible with my search.  For example, if I am trying to add a user to a distribution list, and I type the users first name of "john", I swear it used to show me all the people with the name "john" and I could pick the right one.  Now, I have to use either the last name or the user id for it to resolve a user name or show me a list of possible choices.  I could be completely wrong about this, but if we have three uses with the first name of "john" in our organization, why can't AD search for them with first name?  Also, if I type in the full name, like "john smith", it can't resolve that either.  Maybe I am just going crazy and it was always this way...but it seems like something has changed.
0
Comment
Question by:jbobst
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 6
  • 4
11 Comments
 
LVL 9

Expert Comment

by:MHMAdmins
ID: 40302046
0
 
LVL 23

Expert Comment

by:yo_bee
ID: 40302514
You are right. You should be able to type any part of the name and query should return your results.
i.e.  Jo  should return Joe John, Josh Jonhson

Are you using the Default Find tool within ADUC?
0
 
LVL 1

Author Comment

by:jbobst
ID: 40305123
yo bee:  Yes, using the default tool

MHMAdmins: I looked at the link but couldn't make much of it regarding my issue.  Is there a specific thing to look at?
0
Salesforce Made Easy to Use

On-screen guidance at the moment of need enables you & your employees to focus on the core, you can now boost your adoption rates swiftly and simply with one easy tool.

 
LVL 23

Expert Comment

by:yo_bee
ID: 40305651
Do you recall the last time you were able to search and is it only happening from your machine or all machines.
0
 
LVL 23

Expert Comment

by:yo_bee
ID: 40305980
Would you be able to post a screenshot
0
 
LVL 1

Author Comment

by:jbobst
ID: 40306094
Test.JPG
I don't recall when I was able to search, and I've tried this from my local domain controller and my AD users and computers snap in console on my Win 7 machine.

If you notice in the screenshot, I am looking for a user with the name jeff in the "PHX" container.  The strange thing is, if I back out of that container and go to the root domain, and search for jeff, it automatically resolves to another jeff in another container.  There are multiple jeff users in our organization and if it found one of them, why doesn't it find them all and give me a list to choose from.  The fact that it even finds one is interesting, because I don't think it even found one when I first posted this message a few days ago.
0
 
LVL 23

Accepted Solution

by:
yo_bee earned 500 total points
ID: 40306901
If there are no Jeff's in the PHX OU then it will not resolve any that above PHX OU, but if there are other OU's nested within the PHX then it will resolve them.

You have to look at it as if PHX is the top level once it is selected. So if you select your Domain as the top level then is will iterate through every OU below it.  

It is the same if you were searching for a file name YearEnd.doc and it resides in a folder called financials and this folder is a sub of Company Files, but you are in another sub directory of Company Files called Events searching.  You would never find the file YearEnd.doc.  
 Company Files > 
Financials > Reports >
Events > Partys>


   
Does that make sense?
0
 
LVL 1

Author Comment

by:jbobst
ID: 40306907
Yes, but there is a jeff (me) in the PHX OU.  I just picked that one as a test.  I went to the root level of the domain and searched there as well and my user account didn't come up.  Strangely enough though, at the root level, there is a jeff that populates, just not me and nor does it give me a choice of jeff's to choose from (there are a few jeffs in our domain).  I also picked a very unique first name that only one user has in our domain and when I searched for his name, it couldn't resolve anything.  Yet, if search for his last name, it resolves just fine.
0
 
LVL 23

Expert Comment

by:yo_bee
ID: 40306916
What if you search by last name for you.  Does it resolve?


Just out of curiosity how many DC to you have in your environment?
If you have more than one try connecting to another and see if searching works.
0
 
LVL 1

Author Comment

by:jbobst
ID: 40307055
Yes, last name and login name resolve fine.  We have about 7 domain controllers.  I've tried three of them, all the same results.  This is not a big deal, but it's just strange behavior.  One thing to note, is if I go into AD Users and computers and do a "find" and use first name as the search criteria, it finds all the jeff's for example.  It's when I am trying to add users to security groups or distributions lists or pick users to assign file share rights where it doesn't find anything on first name.
0
 
LVL 23

Expert Comment

by:yo_bee
ID: 40307097
I would connect to the GC and see if that shows anything
0

Featured Post

What Is Transaction Monitoring and who needs it?

Synthetic Transaction Monitoring that you need for the day to day, which ensures your business website keeps running optimally, and that there is no downtime to impact your customer experience.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Did you know that more than 4 billion data records have been recorded as lost or stolen since 2013? It was a staggering number brought to our attention during last week’s ManageEngine webinar, where attendees received a comprehensive look at the ma…
I was prompted to write this article after the recent World-Wide Ransomware outbreak. For years now, System Administrators around the world have used the excuse of "Waiting a Bit" before applying Security Patch Updates. This type of reasoning to me …
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

717 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question