Rename Active Directory Account

jskfan
jskfan used Ask the Experts™
on
Rename Active Directory Account

When renaming AD account, what are things that can be impacted? for instance if I have folder NTFS permissions assigned to the AD account that has been later renamed.

Thanks
Comment
Watch Question

Do more with

Expert Office
EXPERT OFFICE® is a registered trademark of EXPERTS EXCHANGE®
Commented:
user name renaming will not change the SID which is the actually using in ad to share folders and users permissions. hence the sharing will not effect ...

all the best
Distinguished Expert 2018

Commented:
In a well designed AD-integrated app, nothing is impacted.  Everything is set by internal security identifiers that don't change and aren't tied to the account name.

Caveat is "well designed."  I have seen apps tie to UPN or email address and those links can break if the app has no way to reconcile changes.  As that is a per-vendor/per-app scenario though. An expert here can't predict what might break in your environment.

No built-in Microsoft role, nor anybproxutrs I am aware of, have an issue though. All use a separate hidden ID field of some sort. Even AADConnect uses an immutable ID that is stamped during creation or when a soft match is made so changes after a match are synced.
MaheshArchitect
Distinguished Expert 2018

Commented:
No matter you change what properties of user object as user SID did not change at all and permissions are actually get configured on user SID
Ensure you’re charging the right price for your IT

Do you wonder if your IT business is truly profitable or if you should raise your prices? Learn how to calculate your overhead burden using our free interactive tool and use it to determine the right price for your IT services. Start calculating Now!

Shaun VermaakTechnical Specialist
Awarded 2017
Distinguished Expert 2018

Commented:
When renaming AD account, what are things that can be impacted? for instance if I have folder NTFS permissions assigned to the AD account that has been later renamed.
Anything that used %username% variable, for example, script and map drives.

Also, profile folders will not match the username anymore
MaheshArchitect
Distinguished Expert 2018

Commented:
yes, but access will remains as is, it will not change even foldername and username miss match

Also assuming these are rare cases, you may rename profile folder name under registry to suit new username

Author

Commented:
Thank you Guys
Shaun VermaakTechnical Specialist
Awarded 2017
Distinguished Expert 2018

Commented:
Also assuming these are rare cases, you may rename profile folder name under registry to suit new username
No, you cannot. It will break inter-profile shortcuts

Do more with

Expert Office
Submit tech questions to Ask the Experts™ at any time to receive solutions, advice, and new ideas from leading industry professionals.

Start 7-Day Free Trial