Disabled AD Accounts - Remove Instances of That User within File Share Security, Management Roles, Etc.
hello all,
hoping can me out little problem. i'm working on major clean-up company's ad infrastructure. 1 of issues large amount of disabled ad accounts have kept legal reasons. essentially, when user termed, account disabled, group memberships removed, , account moved terminated users ou. no biggie there.
however, company assign individual user rights folder shares managers email boxes, distribution lists, etc.
is there way poll users in terminated users ou, , yank instances of user's account wherever it's assigned? so, user john.smith has rights 10 folders, part of full access rights 2 mailboxes, , manager of distribution list. there way yank 'stuff' in 1 shot?
thanks help?
bill
hello
you could use cmd-let of powershell to query the db active directory, you can do with a sql server.
you can look @ these links.
https://technet.microsoft.com/en-us/library/ee617195.aspx
https://msdn.microsoft.com/en-us/library/aa746512%28v=vs.85%29.aspx
athos
Windows Server > Security
Comments
Post a Comment