Active Directory Computer Remove Groups VERSION 1


This handler will use the server information and computer credentials configured in the task info values to authenticate and connect to the specified Active Directory server (using LDAP) and search for the computer based on the search parameters provided. If a matching computer is found, it will be removed as a member from each group specified in the groups parameter will be added to the computer.

  • If 'Distinguished Name' is selected, the 'distinguishedName' attribute will be used directly to retrieve the User entry.

  • If 'Full Name' is selected, the 'cn' attribute will be used to retrieve the User entry.

  • If 'User Name' is selected, the 'computerprincipalname' value will be used if the "Search Value" parameter includes an '@' sign (IE john.doe@domain.com) and the 'samaccountname' will be used if it does not (IE john.doe).

  • If 'Email Address' is selected, the 'mail' attribute will be used to retrieve the User entry.

This handler will raise an Exception if the specified User or any of the specified Groups are not found in the Active Directory system.


Parameters

NameDescription
Search By'Distinguished Name', 'Full Name', 'User Name', 'Computer Name', or 'Email Address'
Search ValueThe value of the Distinguished Name (Computer Name).
GroupsThe common name(s) of the group(s) to remove. More than one group can be specified by separating each group with a comma.

Sample Configuration

NameDescription
Search ByUser Name
Search Value<%=@answers['ReqFor Login ID']%>
Groups<%=@answers['Groups']%>

Results

This handler does not return any results.


Changelog

Active Directory Computer Remove Groups V1 (2017-Aug-29)

* Initial version. See README for details.