Solved

Can you make it so Active Directory cannot reuse a username even if the username has been deleted?

Posted on 2016-12-01
6
28 Views
Last Modified: 2016-12-01
Hello. Is there a way to force Active Directory to not let you use a username of a previously deleted account? For instance if Jane Smith's username is jsmith and leaves the company and we delete her account I would like to make it so that AD will not let me use jsmith for a new hire James Smith. Is this possible?
0
Comment
Question by:Don Harvey
  • 2
  • 2
  • 2
6 Comments
 
LVL 95

Expert Comment

by:Lee W, MVP
ID: 41909255
No way I've ever heard of.  Could you explain why you want this?  Perhaps we can offer a solution then?
0
 
LVL 21

Expert Comment

by:JesterToo
ID: 41909268
Rather than delete the account, why don't ypou just disable it?  That would accomplish what you want and also preserve some history of the former user.
0
 

Author Comment

by:Don Harvey
ID: 41909277
Our organization is migrating from Exchange to Gmail. Because of regulations we have to keep all emails for a long time. Limitations to Google's ediscovery is forcing us to keep the Gmail accounts for ever (or until they enhance the product).

Another though is when we delete an account can we create a contact (or other type of object) with the old user name and would that keep us from using it? My hunch is no.
0
Control application downtime with dependency maps

Visualize the interdependencies between application components better with Applications Manager's automated application discovery and dependency mapping feature. Resolve performance issues faster by quickly isolating problematic components.

 

Author Comment

by:Don Harvey
ID: 41909279
The disable thing may be our best options but because of IRS regulations and audits we would have to create a locked down OU. They request that accounts where no one has logged into them for 60 days or more get deleted. So we would have to prove the security to the IRS in our next audit.
0
 
LVL 21

Accepted Solution

by:
JesterToo earned 500 total points
ID: 41909287
Perhaps you could check with the legal department to see if disabled would suffice.  It seems to offer more protection, and historical benefit, than simply deleting the user account regardless of what OU it is contained in.  Just my opinion :)
1
 
LVL 95

Expert Comment

by:Lee W, MVP
ID: 41909364
Are you sure Google is the best solution for you at this time? It seems to be creating problems for you.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Companies that have implemented Microsoft’s Active Directory need to ensure that the Active Directory is configured and operating properly. If there are issues found and not resolved, it eventually leads the components to fail or stop working and fi…
[b]Ok so now I will show you how to add a user name to the description at login. [/b] First connect to your DC (Domain Controller / Active Directory Server) SET PERMISSIONS FOR SCRIPT TO UPDATE COMPUTER DESCRIPTION TO USERNAME 1. Open Active …
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

911 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now