|
The Stick
Join Date: Dec 2007
Location: Someplace Safe?
Posts: 17,328
|
Does anyone on here know anything about Active Directory and how users should be managed?
The network guy is reorganizing employees into OU's for different departments and office locations in the company. I thought that is what the fields for department and location are for in the users record, then you just build dynamic groups based on those field values.
I am not schooled in Active Directory, but that's how I've been doing things since 2007 without any problems.
It just seems that this network guy want's to do EVERYTHING with OUs. Says you can set security with them, but you can set security with any group and it does not have to be an OU.
The migration guys also added an attribute field to not migrate users to the hosted environment. There are 15 available custom attributes already available that are much easier to set/unset/manipulate and use for dynamic selections than the attribute they added. Maybe I am just not thinking the Microsoft way.
I just have this feeling that our Active Directory Schema is getting totally screwed up so it will be unusable for actual directory services like password validation. We are already seeing problems with people's login's not working where they have been fine for years.
__________________
Richard aka "The Stick"
06 Cayenne S Titanium Edition
Last edited by RKDinOKC; 02-19-2015 at 10:58 PM..
|