Division Attribute Field in ADUC
Hello, How can i enable the hidden user attribute "division" in my ADUC user properties. we'd like to utilize this hidden field but i am having trouble finding the instructions and thought perhaps our ADManager Plus could handle it easily. Thank you. Scott (new to the forums and ADManager Plus / ADAudit).
Extending the functionality of ADManager Plus
Hello We're looking for a product that will meet our AD account provisioning needs, so we decided to test ADManager Plus. I installed the trial, and tried to find the following functionality, but have not been very successful: 1. Configure validation rules on certain AD attributes, for example we need the Employee ID to have a fixed length of 6 digits. 2. Prefill AD attributes from (or validate them against) external data sources, e.g. the HR database. Is it actually possible to extend the functionality
Automation with Policy including a template = Cannot run by report
I'm new to ADManager, but am trying to configure an automation policy to run on expired accounts (a 90 day deprovision policy). I can create the automation policy fine, but when I try and tie it to an automation, I am limited to running the automation against a CSV file. I've discovered that, if the automation policy does not include an account modification template I can run the automation against a report instead. Why can't I run an automation policy against a report if I'm modifying accounts
Populating Attributes that have String( Generlized-Time) as syntax
Hi, I have a custom made attribute in our AD that is set to be a String(Generlized-Time) syntax. That we have been using for years. And if I look at the attribute on a user. The value looks like this, 20120601000000.0Z This is for a user that are created on the, first of June 2012. (HR are using a simulare tool as AD Manager Plus to add new users to our AD, with this this information to the attribute.) But when I try to populate this attribute from AD Manager Plus, I get a error that the format is
Bulk untick Account, Password never expires
Hi, How do I bulk untick for all users in the domain the Account, Password never expires setting. Thanks, Scott
AD Manager Plus
Hi, I need to find out how I can get a report to show when a specific user was added to the Domain Admin Security Group and when he was removed.
Auto delete disabled users after 30 days
Hi. We are updating our terminated users policy. We have a on-prem ad synced with Azure AD and Office365. Currently it works like this: HR sends a request by Zendesk to IT who disables the terminated user using the Disable User function. We´d like the AD account to be deleted after 30 days, as a disabled account still receives emails in office 365. However we want to keep the account disabled for 30 days without deleting, in case of needing ot reactivate the user. I have looked at automations,
Custom Script Issue With Disable Policy in AD Manager Plus
Hello. I upgraded from ADManager Plus 32 bit to 64 bit and the problem I was having with the Disable Policy not passing Arg1 into the Powershell has returned. For some reason the Disable Policy script is not passing the %USERNAME% as a variable into the powershell script. The custom script call that I am using is: Powershell -ExecutionPolicy Unrestricted ./disablescript.ps1 -Arg1 %USERNAME% This returns the following error: Custom Script Result :D:\ManageEngine\ADManager Plus\bin\disablescript.ps1
Moving bulk users from CVS to different OU
Hi All, I have more than 300 users,in different OUs of my AD ,i have the full list of users in excel sheet,i want to move all this users to different OU,i can see the option in Ad manager to move through CVS file ,what should be the format of users in the CSV file
No groups are displayed for some users
When viewing a user's group membership, none of the groups show. This issue isn't with every user, but in about 6 so far. I have attached an example that illustrates issue: Screenshot 1 shows no groups for this user in AD Manager Screenshot 2 is the actual group membership of this user, using ADUC who belongs to more than 10 security/dist. lists. Any assistance would be greatly appreciated. Thanks
Dropdown from custom ldap attributes
Hello We are using the AD attribute "Division" as a mandatory attribute in all our User/Employee Creation. We have several divisions, and under each division are several departments. When creating an employee, we have to manually type which division the user belongs to. This sometimes results in mistyping. Is it possible to make a drop-down list from "Custom LDAP Attributes"? Another sub-question: It would also be nice if Departments could be sorted under Divisions... :) Regards, Annfinn
Error: Access Denied - How can update user attribute ?
Hi there, I've recently installed ADManager Plus and have been trying its features around. I need to change many attributes of users account already present in AD. I try using a csv file, a list of users with this attribute: givenName sn telephoneNumber mail userPrincipalName physicalDeliveryOfficeName title company department postalCode homeDrive homeDirectory It works with some users, while most of the others does not work, with this error: Unable to retrieve the object from AD - The object does
How to modify user list attribute by csv
Hi, I need to change many attributes of users account already present in AD, but not work. I try using a csv list with this attribute: givenName sn telephoneNumber mail userPrincipalName physicalDeliveryOfficeName title company department postalCode homeDrive homeDirectory. after running goes out this error: Unable to retrieve the object from AD - The object does not exist or access denied I try again with other attributes or less attributes but it not work again. while with other users it works
Custom Script Issue With Disable Policy in AD Manager Plus
Hello. I am working on configuring a Disable Policy and am trying to call a powershell script. For some reason the Disable Policy script is not passing the %USERNAME% as a variable into the powershell script. The custom script call that I am using is: Powershell -ExecutionPolicy Unrestricted ./disablescript.ps1 -Arg1 %USERNAME% This returns the following error: Custom Script Result :D:\ManageEngine\ADManager Plus\bin\disablescript.ps1 : Missing an argument for parameter 'Arg1'. I have a few automated
I want move computer object belongs sites
Hi, In my AD environment, I have computers objects in default computer OU and want to shift these are the computers into desire sites. I have 10 sites which is my remote location and i have create site wise subnet in AD sites and services. Please help me to get all computers move into to belongs sites. Regards, Ilyas Ahmed
Error on IE whe upgrade to 6560
We upgrade to 6560. when using internet explorer try to create a user, if I select the account tab ,the page show but the form is not responding. cant select another tab only cancel or fields in this tab. detected the field that create this behavior as the group. when select to edit the group field it open, try to add or remove group and became unresponsive. but if I use the system with chrome browser it works.
Upgrading dirsync to Azure AD Connect on ADmanager plus server
Hi guys, We are wanting to upgrade Dirsync to Azure AD connect before the end of support of Dirsync, is there anything I need to do with ADmanager plus in regards to this? I looked through the documentation on here but could not find anything to do with this topic. Any response would be appreciated. Thanks!
CRUD process
Hello Team, Could you help us with AD Manager Plus issue? We are using AD Manager for our CRUD process,the issue is when we are creating (Automatic) new user (Active Directory) getting information from a CSV file. The CSV file content Employ Information: Name, LastName, SndName, EmployID, EmployNumber ADManager should read line to line this CSV file, check in Active Directory if this Employ not exist (filter EmployID OR EmployNumber), and create new user... The issue is that ADManager does not check
IF Office then list only specific departments for office
Hi, I was wondering if there is a way to create the following in the user template. I want only a specific group of fields to show up under Department. Under creation Rule I would like to be able to select The office, when the office is selected I want only the Departments pertaining to that office to show up. Something like this -------School A (Office) ---School A Department 1 ---School A Department 2 ---School A Department 3 ---School A Department
Create groups and then add users to them?
I'm in Higher Ed environment and I'm looking to maybe use ADManager instead of something like Microsoft Identity Manager to automate Group membership. Our DBA can retrieve courses and their students (including their sAMAccountName) from a SQL database (the Student Information System). Should I have those dumped to a csv and then with ADManager, would it be able to create them and then add the users to them? Then periodically, we'd need to remove students from them. So I'm wondering if it's best
Import Photo Automation - No users with missing photos report
Hi All I have been trying to setup the new photo import automation but I only want to import the missing photos daily and import all photos once over the weekend (to catch any updated photos). I would have thought that with the arrival of the photo import automation that the 'users with missing photos' report would be available to the automation? Please correct me if i'm wrong (I could be doing a man look ). If it's not a case of me missing the blindingly obvious has anyone any ideas how I can achieve
User Creation templates with Office 365
We are using dirsync to sync AD accounts with our Office 365 accounts. I've created a new template for user creation and added the Office 365 tab. I want to add proxy addresses to the AD account so that it will sync multiple alias addresses. I can't add the exchange option to do this without configuring an exchange management group. How can I add the proxy address or "Additional Email Address" option without exchange? Thanks
Added Multiple Users to Multiple groups
Hello, I need help adding multiple users to multiple groups. The caveat is that my source data has ONE group per row with all users in corresponding row. Three questions 1. Which bulk operation would I use to achieve this? 2. What would my CSV row headers look like? 3. What format does the data need to be for the corresponding headers Ie, Groups - "CN=Group1,OU=Groups etc.." Example GroupName Members Group1 Joe, Jimmy, David, Sammy Group2 Joe, Jimmy Group3
Adding Multiple Users to Multiple groups
I need help with adding multiple users to multiple groups. The caveat is that my source data has one group name per row with the corresponding members in the same row. Example Dataset (Notice user names are separated by semicolon) GroupName Members Group1 Doe, Jane;Doe, John;Jordan, Jake;Chirba, Brian Group2 Doe, John;Jordan, Jake Group3 Doe, Jane;Chirba, Brian Group4 Doe, John;Chirba, Brian Three questions: 1. What import option will I use to achieve this? 2. What will my CSV column headers be?
bulk update employee ID
Is there a way to bulk update the "employeeID" attribute? I do not see any header that matches up with "employeeID" when I look at the "List of LDAP attributes suppored by ADMP". Thanks
Delete secondary smtp
How to bulk delete old secondary smtp addresses.
change the display name
hello the display name are written in my native language .... i want to generate a CSV file and change it manually then return it back ... how to do that? thanks in advance.
restrict to Selection only (disable 'specify') in "Title" field (in custom template)
Hi I've created a custom template where delegated admins can modify a user's AD details. When adding fields to the custom template, I notice that for the "department", the admin cannot type or enter anything manually into the field; the option is to "select" only from the dropdown. However for the "Title" field, the option is to "Select/specify" a value, and they can manually type in (create) a new Job Title. Is there any way to disable this (that is, make it only selectable). Thanks!
Admanager in 2 different continents.
I wanted to install admanager at 2 different geographic datacenters US and UK that will not share a DB. Will this cause issues?
SDP Reset Password Action - 'User must change the password at next logon' not taking effect.
When resetting a password in ServiceDesk Plus using the recent ADManager integration enhancements, the box for forcing the user to update their password on login is not working. Checking the user object, the MustChangePassword flag is set to False.
AD Manager - Request to include Exchange auto reply feature in User modification template
Hi, We use user modification template when a user leaves to remove group membership etc. It would be great if we can set an out of office reply as part of that template. I am not sure if it's possible already but if not then it will be a great feature.
Free Webinar - Benchmark your user onboarding process through automation
Join this live webinar by Harish Sekar, ADSolutions Product Specialist, and learn how to streamline and automate the user onboarding process. Get detailed insight into automating bulk provisioning of users in Active Directory, Office 365, Exchange, and Google Apps, effortlessly, without writing PowerShell scripts. Date: 1st December @ 02 PM EST Register Now
ADManager can't export more than 1000 user
Hi, I an trying ADManager for manage Active Directory. It is very nice and easy to use for admin and users. Great job! Today i try export list alluser in my Active Directory (more than 2500 user) but it only display 1000 user. Is there a way to fix this problem? Thanks & Regards,
ADManager to rename PCs
Can PCs be renamed via ADManager? I saw an older thread that implied this feature would be available in the future, but it doesn't look like it had been updated in a while. Thanks!
export users
Exist any option to generate a csv file with Ad manager plus with all the domain users and the same password to migrate them to a new server in a new hardware, the old server is windows server 2008 ST the new server is windows server 2012 ST Thanks for your help
Different rights for different OU's
Hi, I am pretty new to ADManager Plus. I have setup a role for a group of staff to modify users group memberships and reset passwords. Now I require these staff to reset passwords for users in a different OU but not have the ability to modify their group membership. can this be done and how would I achieve this?
Automation Policy - Cancelling Successive Task
As far as I am aware if an automation policy has a task set to perform an action in say 30 days there is no way to cancel it except via a work flow, please correct me if I am wrong. It would be very advantageous if ADmanager Plus could cancel the successive task via another automation policy and\or modification template. The process I was envisioning was a simple tick box to cancel the task. OK I admit it may not be that simple to implement. I work in a FE environment with 10,000 students who by
how to set bulk employee id in active directory
how to set bulk employee id in active directory
ErrorCode 31 on recovering deleted user
Our helpdesk technicans can't restore deleted users. It shows errorcode 31. the ad manager works with a domain admin account. Version 6510
Select closest DC when making a change
As a global company with 40+ domain controllers spread across ~35 sites our field services personnel find that making a change to a user or computer account takes up to 20 minutes to be reflected locally. I'm assuming that is due to change taking place on the DC that is first in the list. The pushback from this group of locally based technicians along with other limitations we find in ME is forcing us to look at other products unless someone can tell us of a workaround. I'm not sure that this issue
Next Page