Invoke Active Directory SDProp Powershell

Invoke Active Directory SDProp Powershell

Hello,

Active Directory uses an internal process named SDProp for “Security Descriptor Propagation” to apply different ACLs on high privileges users or groups. The process copy the ACL from the AdminSDHolder to protect those users and groups. You can read a lot more information on a previous article of mine. Continue reading

Check Global Address List Compliance PowerShell

Check Global Address List Compliance PowerShell

Hello,

When migrating to Office 365 from various exotic messaging system, you usually hit the fact that Active Directory isn’t a reflect of the situation. Especially when you’re looking at the attributes that are used for building the global address list for Exchange Online and Skype Online. Continue reading

Change Active Directory Copy Behavior

Change Active Directory Copy Behavior

Hello,

Just like the tombstone behavior, the copy behavior can be altered to fir your needs. This is the same concept as before, you just need to change the SearchFlags attribute in your schema. In fact, you can alter a lot of basic functionality of Active Directory this way. Continue reading