What the function of the security group "Domain Users"?

J

James W. Long

Dear All:

The security group in ADUC called "Domain Users" has everyone and
everything in it,
lots of extra stuff in addition to domain users (people, ie our clients)

I wonder if I can delete things out of there to prune it to just our people
clients safely.

Reason why is, I want to make a distribution list and want only our people
in it,
so this new dist list {DL Everyone} would have the group (Domain Users) as
its member,
after I would clean up Domain Users to only include our people client domain
users.

Would it DISMEMBER the objects I would remove from the
global security list "Domain Users", OR is it just a list I can manipulate
to my needs without affecting domain membship for the object I would remove?

Hope that all made sense

Thank you in advance !


James W. Long.
 
H

Herb Martin

James W. Long said:
Dear All:

The security group in ADUC called "Domain Users" has everyone and
everything in it,
lots of extra stuff in addition to domain users (people, ie our clients)

I wonder if I can delete things out of there to prune it to just our people
clients safely.

Generally don't mess with Domain Users.

It does NOT contain everyone -- that is Everyone,
a special (should be called Automatic/Dynamic group).

Create a new group for your particular purpose.
 
J

James W. Long

How dissapointing. I had hoped to save myself the work of adding
each and every user to a new Distribution list to email "all"
Hm wonder if I could copy it?

James W. Long
 
H

Herb Martin

James W. Long said:
How dissapointing. I had hoped to save myself the work of adding
each and every user to a new Distribution list to email "all"
Hm wonder if I could copy it?

You cannot EXACTLY copy it but there was code
(around) here the other day for dumping the contents
of a group which could also be used to add them back
in (with a treak or two) into a new group.

This may not save you much time on THIS OCCASION,
but learning to do it and using it in the future will quickly
become a big time saver if you have much management
to do....
 
J

Joe Richards [MVP]

In addition I would wonder how well Exchange would handle enumerating the
membership of that group for expansion because the members aren't actually
listed in the member attribute if that is their primary group.

joe
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top