Identifying "dead" machine accounts in Active Directory?

  • Thread starter Thread starter Robert Gordon
  • Start date Start date
R

Robert Gordon

Is there a way to identify stale or dead system records in AD, for computers
that have been removed from the network for one reason or another (machine
removed and reimaged under a different name, machine account not properly
removed from AD upon retiring that account's machine, etc.).

Even just the ability to simply script a way to identify systems that
haven't accessed AD within the last 10 days would be helpful.

Regards,

Robert Gordon
 
Robert said:
Is there a way to identify stale or dead system records in AD, for computers
that have been removed from the network for one reason or another (machine
removed and reimaged under a different name, machine account not properly
removed from AD upon retiring that account's machine, etc.).

Even just the ability to simply script a way to identify systems that
haven't accessed AD within the last 10 days would be helpful.

Hi

Take a look here (can be used for computer accounts as well):

http://www.rlmueller.net/PwdLastChanged.htm
 
Back
Top