Active Directory Best Practices: User, Group, and GPO Management

FreakyDodo
6 min readOct 14, 2024

In this Blog, I am going to perform some of operations on Active Directory and their users/computers, that aligns with a typically IT Support role. This Operations are:

  1. User & Group Management.
  2. Folder and Drive Access Management Operations.
  3. Computer Management.
  4. Security & Compliance.
  5. Automation & Scripting.
  6. Backup & Disaster Recovery Operations.

Each Operations contains subsets which would allow use to perform more granular activities in an ADDS environment. Firstly we will perform Operations related to User & Group Management.

In this module we gonna perform 4 major functions that an admin performs over a user & groups, this includes user profile creation, group creation ( security & distributed), Creating GPO and linking it with an OU and many more.

Let’s start with our first module i.e Creating and managing User Accounts:

  • Add a new user to AD.
  • Configure user properties (e.g email, phone number , department etc)
  • Setup user profiles and home directories.

Before we began here’s my ADDS environment that has the following structure with 5 Organizational Unit each representing a different department, and has users respectively, I only have one Computer added at this time to keep the environment clean

--

--

FreakyDodo

Hey Hackers !! I am Harshit Dodia aka Freaky Dodo , I am a student of Information Technology and Ethical hacking.