Quote:

Quote:

As for item 2, technically if you would enter the file path in the AD's user profile it should set permissions to it accordingly




I'm sorry, but no it does not work that way. It only sets the users account to that folder as a home folder which you can then also set a drive letter to map to if wanted.




Actually it does if you set the profilepath to: \\Server\profiles$\%username%\My Profile\

when that user logs in, AD will create the folder and set rights accordingly, only admin's can't access them but thats good enough for me.

I am almost finished with my tools, I set the ppl who can create account to have rights in the "accountoperators" group. Only problem I have now is I need to figure out how I get a user's full LDAP path (the original one) for instance if a user is made in:

LDAP://CN=administration,OU=Administration,OU=Users,DC=microsoft,DC=com

and lateron is added to for instance Staff, how would I get a users original LDAP path ?
_________________________
can not join #Real_Life (invite only)