Is there a way to update the "Managed By" field for every group in Active Directory? I would also need to check "Manager can update membership list" also.
Active Directory Bulk Group Edit
active-directorybulk-actiongroups
Related Topic
- Windows – Command line to list users in a Windows Active Directory group
- Active Directory – Bulk Company Update
- Ldap – Dynamic group membership to work around no nested security group support for Active Directory
- How to let non-admins manage selected domain groups’ membership
- How to allow security group members to manage other group membership in Active Directory
Best Answer
This can be done through PowerShell
This is undebugged, but should get you most of the way there. What it does:
dsquery
to grab the Distinguished Name of the user with the full-name of "Testing Tester".dsquery
to fetch a list of candidate groups, and passes that to a variable as a list.So long as $DNOfManager is set right, this should set all groups in the domain to be managed by that one manager. ALL of them. Make sure the query in step one is defined right and doesn't pick up groups you don't want (Domain Admins?).