Additional Platform Support:
- Azure SQL Managed instance
- Windows Server 2022
User Provisioning:
With the rise of data breaches within organizations, it has become increasingly important to ensure users are created with proper access as they join an organization as well providing an easy way to remove that access when they leave. Ensuring user’s access is up-to-date through provisioning is a time consuming process that typically needs to be done immediately and has the potential for human error.
Active Administrator is extending its user management capabilities by providing the ability to automate
provisioning and de-provisioning of users accounts.
When you begin the provisioning or deprovisioning process, a log file that tracks your provisioning actions is created, stored on the server until purged, and available to view in the client for troubleshooting purposes
NOTE: The provisioning feature is enabled through role-based access.
- By default, all users are granted the User Provisioning read-only access role
- Users who hold the Full Access role are automatically granted the User Provisioning role
Active Directory Health enhancements:
- Ability to review the selected alerts included in a notification before completing the configuration
Auditing and alerting enhancements:
- Ability to search for accounts to exclude by name, group, or OU
- Ability to select the time zone for scheduled reports
Installation and upgrade enhancements:
- Ability for a non-administrator to run Active Administrator without User Account Control (UAC)
- Ability to use Azure SQL Managed Instance for live and archive databases. The New Active Administrator Database and New Active Administrator Archive Database dialogs have been extended to allow you to connect to an Azure SQL Managed Instance using the required Azure Active Directory or SQL Server authentication
Certificate updates:
- The Certificate Management window has been updated to include a tree view that, by default, displays the
computers being managed with the Certificate module in your organization and all the associated
certificates. From here, you can also select to create a virtual folder structure to help visually organize
those certificates to facilitate their management
Security and delegation updates:
- Ability to copy text from objects in Active Directory Security & Delegation’s security dialog
- Ability to sort the contents in the inactive users preview and history panes by selecting the column header
- Ability to set the number of days before a user and computer account is disabled after it has been deemed
inactive - Ability to select to include either both inactive user and computer accounts or just one type in email
notifications - Ability to set a schedule for sending inactive account email notifications
Resolved issues:
- The Active Directory Domain Test under the DNS Modeling feature is showing a false failure when
querying for domain root - 325402 - Domain Users built in group members are not displaying in the Security and Delegation module - 264262
- AD Health inaccurate disk space warning issued when the domain controller cannot be contacted
through WMI - 242624 - Unable to select source and target domain controllers when creating a replication tests in Active
Directory Health Troubleshooter - 242635 - Updated jQuery used by the web console to the latest version 3.6 - 244970
- TCP Port Exhaustion occurring on the ADS service host computer in large environments with many
AD Health agents - 245229 - “AD version" column on regular auditing agent displays the incorrect version - 246523
- Unable to purge computer accounts if bitlocker is enabled on the computer - 256716
- Restore failing on non-English operating systems - 257823
- AD Health frequent NULL HeartBeat values in the database (Null DC, Site, Domain, Forest) - 261523
- AD Health unable to apply templates to domain controllers unless they contain the same alert
settings - 264643 - Logout now forcefully ends user session in web console - 268883
- Issue with AD health custom remediation action for deleting conflict folder contents - 268887
- Unable to changes to the Dashboard view in the web console - 293297
- AD Health unable to monitor domain controllers named using DC-Name format - 329067