[New Release] ADManager Plus' latest build 8020 is now live!

[New Release] ADManager Plus' latest build 8020 is now live!

Hello everyone,

We are glad to let you know that we have released the latest build of ADManager Plus, 8020.

Features

  • Risk exposure management: Provides a visual map of high-privilege accounts, helping identify vulnerabilities and privilege escalation paths. It continuously monitors risk, provides security insights, and recommends remediation to strengthen your AD environment.

  • Identity risk assessment: Risk Assessment now includes the following enhancements:

    1. Active Directory risk assessment

      • A new Misconfigurations category has been added.

      • 48 new risk indicators have been added across users, security, and misconfigurations categories for deeper analysis and improved security insights.

    1. Microsoft 365 risk assessment

      • On-the-fly management actions are now supported for Microsoft 365 risk indicators.

    • The following entitlements can now be reviewed and certified through access certification campaigns:

      • Exchange Mailbox Rights

      • Microsoft Teams and Channel Membership

      • Exchange Online Mailbox Rights

    • Dynamic group membership: Create rule-based groups that automatically update memberships of security and distribution groups based on defined conditions, ensuring accurate group management with zero manual intervention.

    • You can now modify the properties of a dynamic distribution group.

    • Computer migration: You can now perform inter-forest and intra-forest computer migration.

    • Exchange Mailbox conversion: You can now convert any mailbox type to a regular, room, equipment, or shared mailbox in bulk.

    • Merge GPOs: The capability to merge multiple GPOs into a single policy within a domain has been added.

    • Template enhancements:

      • Group creation templates now support Creation Rules.

      • Computer modification templates now support Modification Rules.

Enhancements

  • ADManager Plus now supports Microsoft SQL Server version 2022.

  • Performance has been improved for OU-based delegation and certain bulk management actions.

  • The duration for which a member must remain in a specific group can now be configured while creating or modifying a group.

  • Assign Conditional Access Policy and Remove Conditional Access Policy blocks have been added under Cloud Actions in the Orchestration template.

  • The Mail Tips field has been added to Mailbox Creation Templates.

  • You can now create script-based custom functions for naming formats. This allows the use of multiple macros within a single function to generate dynamic, organization-specific naming patterns in a structured, manageable way.

  • Recipient Type and Label columns have been added to Exchange mailbox reports.

  • Custom validation support has been added for custom attributes, enabling precise input checks when creating or modifying objects using templates.

  • An Auto-map shared mailbox users to Outlook profiles checkbox has been added while setting mailbox rights for user mailboxes.

  • Mail Server selection is now available in the Remote Mailbox tab of user and shared mailbox creation templates.

  • AD Explorer now displays Windows LAPS details, including the password history entries, under the Computer Object properties.

  • The LAPS setting has been removed from the Edit Help Desk Technician section, and a new Help Desk Role named LAPS Role has been added by default to the Legacy LAPS Details Workstation Computers report and AD Explorer.

  • An option to notify on failed objects during workflow execution has been added.

  • A Remove All NTFS Permissions action has been added under Other Actions in Orchestration.

  • Custom reports now include the following enhancements:

    • Support for userWorkStation filter, and isEmpty and isNotEmpty criteria for Country attributes.

    • Ability to select multiple objects in the Member and MemberOf pop-ups.

    • New database filters such as BadPasswordCount, DaysSincePasswordLastSet, UserLogonCount, and CanonicalName have been added.

    • LAPSPassword, LogonHours, Nested Member and MemberOf Count columns have been added.

    • Support for Reset UserAccountControl Property management action.

  • Scheduled reports now include the following enhancements:

    • Multiple servers can now be selected in the Shares in Server pop-up.

    • Schedule support to the Folders Accessible by Accounts and Non-Inheritable Folders reports has been added.

    • Refined filter support introduced for NTFS Reports.

    • NTFS Reports now include the following enhancements:

      • Support for Remove, Modify, and Modify Bulk NTFS Permissions actions has been added.

      • A Disabled Users filter has been added to the Refine Filters section.

      • Description, Location, Last Write Time, and Last Access Time columns have been added for enhanced report visibility.

      • Built-in security principals such as CREATOR OWNER, SYSTEM, and AUTHENTICATED USERS are now available in the security principal selection pop-up.

    • GPO Reports now include the following enhancements:

      • Export support added for GPO Settings, GPOs with Specific Settings, Resultant Set of Policy, GPO Modeling, and Comparison of GPOs reports.

      • Scheduler support is now available for GPO Settings, GPOs with Specific Settings, and Comparison of GPOs reports.

      • Preferences settings such as Environment variables, Files, Folders, and Ini Files are now included in the Resultant Set of Policy and GPO Modeling reports.

      • New Enforced GPOs report under GPO Scope Reports has been added.

     

    How to update to this build? 

    Update using the service pack.

    New to ADManager Plus?

    Download the fully-functional 30-day free trial now.

     

    Have more questions about this release? Leave a comment below or reach out to support@admanagerplus.com and we'll be happy to help you out.

     

    Regards,

    The ADManager Plus team

    Toll-Free: +1-312-471-2233

                    New to ADSelfService Plus?