What is the need for ms-DS-GroupMSAMembership attribute in Active Directory
This attribute stores the list of all security principals or requestors who have been granted access to the Active Directory (AD) group managed service account (gMSA) password.
| LDAP display name | msDS-GroupMSAMembership |
| CN | ms-DS-GroupMSAMembership |
| Single or multi-valued | Single-valued |
| Data type | String(NT-Sec-Desc) |
| Attribute Id | 1.2.840.113556.1.4.2200 |
| Classes used in | ms-DS-Group-Managed-Service-Account |
For more details about this attribute, please refer to this MS document.
Did you know?
You can manage the file server permissions of multiple AD users and groups at once, and also report on NTFS and share permissions, without even single line of PowerShell script. Wondering how? Just give ADManager Plus a try.
This integrated AD, Office 365 and Exchange management software offers purpose built-features and predefined reports:
- Assign file server access permissions to users and groups in bulk.
- Modify or remove NTFS/share permissions, of users and groups, on multiple shared folders in a single click.
- Grant temporary access permissions to shares; the permissions are automatically revoked after the specified time.
- Find all available shares on servers.
- List the permissions assigned on file servers and shared folders.
- Identify all shared folders or servers that can be accessed by a specific account.
- And more.
Download the free 30-day trial of ADManager Plus to explore all these features and more, in your environment at your convenience.
Script-free, automated AD management and reporting
ADManager Plus, an identity governance solution for Active Directory, Microsoft 365, and Google Workspace, offers features for automating the bulk creation and modification of user accounts via CSV files and intelligent templates. Generate and schedule more than 200 preconfigured reports on users; export them in CSV, PDF, HTML, XLSX, and CSVDE formats; and do even more.
Unravel end-to-end Active Directory management with ADManager Plus
-
- ADManager Plus Active Directory Management & Reporting
- ADAudit Plus Hybrid AD, cloud, and file auditing and security
- EventLog Analyzer Real-time Log Analysis & Reporting
- ADSelfService Plus Self-Service Password Management
- AD360 Integrated Identity & Access Management
- Log360 Comprehensive SIEM and UEBA
- AD Free Tools Active Directory FREE Tools
