ACTIVE DIRECTORY RECYCLE BIN

Active directory recycle bin provides a way to restore deleted objects without ADDS downtime.

Uses Power Shell with active directory module or the Active Directory Administrative Center to restore objects.

By default it is in DISABLED mode but, once enabled you cannot disable it again unless it is rebuilt or formatted.

ENABLING ACTIVE DIRECTORY RECYCLE BIN

Login DC and open ADAC console.

  • At left hand side, click on the domain name (E.g. Microsoft.com) and raise the Forest and Domain functional level to WIN 2008 R2 or WIN 2012.
  • Refresh ADAC console and you will find an additional option at your right hand side of the screen called “Enable Recycle Bin” and the click on it.
  • Note: By default it is in DISABLED mode but, once enabled you cannot disable it again unless it is rebuilt or formatted.
Picture

VERIFICATION

After refreshing ADAC console, you’ll find a new folder created called “Deleted Objects”.
Picture
Now, open AD Users and Computers and try deleting some users (E.g. M1) Booommmmm …..
Picture
Well, open ADAC console, under deleted objects you will find (M1 User) and click Restore if you want the user back.
Picture
Verify that by going back to Users and Computers and you will find the M1 user present there... Yahoo….
Picture

Comments