Category: 4. Active Directory Import

Global AD statistics (live)

Overview of all domains, their trusts, and the number of their members

After the start of migRaven Next to the "Active Directory Import" you will see a tab titled "Global AD Statistics (live)". You can call it before you have scanned your AD. Displayed are all domains that migRaven has found, even the unreachable and unlicensed. For each domain, the reachability of your account, the type of trust, and the number of members are displayed.

Continue reading

Permanent link to this post: https://help.migraven.com/globale-ad-statistik-live/

Read in complete AD / Forest

When starting searches migRaven by domains. The found ones are displayed after the start. At least one of the found domains must be marked. By clicking the button "Import Active Directory / Forest" the marked domains are scanned. All users, groups and computers and their connections to each other, ie memberships and members, are read. The objects found and their connections to each other are in migRavens Graph database stored.

Continue reading

Permanent link to this post: https://help.migraven.com/kompletten-adforest-einlesen/

AD View - Action: View AD

AD View

The AD-View in migRaven is used for researching group relationships in Active Directory. The group structures can be very confused in larger environments. In the AD View, starting from a selected account, you can see in which groups it is a member and if it is a group, which contains members of these groups. In the view of migRaven It is an advantage that always the effective memberships are presented. So over all group levels the accounts are resolved and the direct and indirect members are displayed.

Continue reading

Permanent link to this post: https://help.migraven.com/ad-ansicht/

colleagues check

In the AD view, there is a second function, the "colleague check", next to the "Analyze group structures" function.

When checking colleagues, you can see how two users are connected by groups. All direct and indirect memberships between both users are displayed.

Continue reading

Permanent link to this post: https://help.migraven.com/kollegencheck/

Indicating AD attributes

AD attributes 1

In the AD view, we have the option of displaying further AD attributes of the displayed objects.
If you click on "Change", you will get a list with numerous attributes, eg cn (canonical name), displayname, distinguishedname, givenName, name, sAMAccountName, adspath, lastlogon, lastLogonTimeStamp, sn (surname) and others. This information is also valuable for the colleague check and allows the administrator to classify users and groups correctly or to recognize misconfigurations.

Continue reading

Permanent link to this post: https://help.migraven.com/ad-attribute/

trusts

The trusts have several trust types:

1. Child trust

When you add a child domain to an existing domain tree, by default, a bidirectional transitive child trust is established.

migRaven recognizes the domains and subdomains. Because the domain administrators can have access rights to the entire domain migRaven recognize and read the domains and subdomains.

Continue reading

Permanent link to this post: https://help.migraven.com/vertrauensstellungen/