How to Restore Deleted Active Directory User Object in Windows Server 2012 Domains

In this blog post we will be learning on how to restore deleted active directory user object. We have enabled recycle bin before performing deleting the object (Lab Scenario). To enable recycle bin in Windows Server 2012 Domain please click here.

Before We Begin

The account with which we are going to perform this task should me a member of Domain Admins Group (Minimum Permission).

Best Practices

If you are running Windows Server 2008 R2 or Windows Server 2012 Domain Controllers then enable recycle bin to restore deleted objects without restoring AD System State Backup.

Lets Explore

image

Figure 1.1 : Two objects marked for deletion.

image

Figure 1.2 : Example with two different option

In figure 1.2 we can also perform restoration with the help of GUID if we have GUID information available with us.

Command for reference.

Example 1

Get-AdObject -Filter {displayname -eq “Sunder”} -IncludeDeletedObjects | Restore-ADObject

Example 2

Get-ADObject -Filter ‘samaccountname -eq “amit”‘ -IncluderDeletedObjects | Restore-ADObject

image

Figure 1.3 : Object Restored Successfully.

Always maintain good backup. And ensure that they are in working condition.

Tested in Windows Server 2008 R2 and Windows Server 2012 Domains.

Happy Learning

Sunder

MSEXCHANGETEAM | Ideas That Clicks

Tagged , , . Bookmark the permalink.

4 Responses to How to Restore Deleted Active Directory User Object in Windows Server 2012 Domains

  1. sathesh says:

    Good and easy to understand !

  2. Fedrik says:

    Simply try this tool for bulk active directory restore operations.

    https://www.adsysnet.com/downloads/ASNActiveDirectoryManagerV10.msi

  3. Sunder says:

    Thank You Fedrik.

  4. Mackay says:

    Latest version of ASN Active Directory Manager available here.

    Active Directory Manager | Deleted Objects Restore With Advanced options

    latest version supports multi domain.