In my AD we have a large tree structure with users in multiple OUs depending on a user's company or department. Is it possible to use the Decommission AD User action without knowing the exact LDAP path to the user? Or maybe is it possible to find out first what is the LDAP path for the user and then use the action? Thanks!
Solved! Go to Solution.
I don't have a big structure like you're talking about in my AD. But what I was thinking, was before the Decommission User, if you tried the Query LDAP action?
Maybe you could build up a query that is elaborate enough to find the correct path for that user.
Have you tried that yet?
Ok - I was just overdoing it. There is no need to point the action to the correct OU for decommissioning as it can search the entire tree. Narrowing it down helps minimize the impact but it is not required.