Thursday 2 November 2017

Active Directory user object inheritance checker

I thought I would tidy up a script I use for Office 365 AADConnect deployments and publish it on the TechNet Gallery.

I use this to check user accounts that have inheritance disabled. From the output I check with the customer to see if this is correct and enable inheritance where necessary. This will throw up errors in Azure AD Connect miis console so it's worth doing as a pre-req check for AADConnect deployments.

You can run the script with or without the -ResultSetSize parameter. It's been coded to default to 1000. Simply utilise it if you have an user object count higher than this.

It's pretty simple to use. Enjoy!

Oliver Moazzezi

