Steps to Install Active Directory Users and Computers (ADUC)

Audit Active Directory Changes with Lepide Auditor
x
Or Deploy With Our Virtual Appliance
4 min read | Updated On - December 14, 2023
In This Article

The Active Directory Users and Computers (ADUC) Microsoft Management Console (MMC) snap-in is one of the main tools used for managing Active Directory domains. The ADUC snap-in is used to perform typical domain administration tasks and manage users, groups, computers, and Organizational Units in the Active Directory domain.

Typical tasks include:
  • Reset user accounts
  • Add users to security groups
  • Create and delete organizational units (OUs)
  • Change passwords
  • Create and manage computers, groups and users together with their attributes
  • Assign FSMO roles like RID Master, PDC Emulator and Infrastructure Master to domain controllers
  • Delegate control of objects
  • Define advanced security and auditing in Active Directory

How to Enable AD Users and Computers

Please note: Active Directory domain controllers (DCs) will have ADUC installed by default.

Remote Server Administration Tools (RSAT)

To manage servers and other computers remotely, Remote Server Administration Tools (RSAT) for Windows, which includes ADUC, will need to be installed. Note that RSAT can only be installed on computers that are running either the Professional or Enterprise versions of Windows.

RSAT enables administrators to run snap-ins and tools to control features, roles and role services on a remote server or other computer. RSAT comes bundled with the operating system starting with Windows Server 2008 R2. For earlier versions of Windows Server, as well as Windows 7 and Windows 8, RSAT is available as a package for download with installation instructions.

The remote administration tools included in the RSAT package include the following:

  • Active Directory Users and Computers (ADUC) – widely used by system administrators to create and manage Active Directory objects
  • Active Directory Administrative Center – used to manage the AD trash can and password policies and to display PowerShell history
  • Active Directory Module for Windows PowerShell – provides PowerShell cmdlets for administering AD
  • Active Directory Domains and Trusts – allows you to manage functional level, forest functional level and user principal names (UPNs), as well as trusts between forests and domains
  • Active Directory Sites and Services – lets you view and manage your sites and services
  • ADSI Edit – provides some functionality for managing AD objects, though most experts recommend using ADUC

How to Install ADUC on a Windows Member Server

To install ADUC, use the wizard in Server Manager, a management tool included with Windows Server. The steps to run the wizard are as follows:

  1. Launch Server Manager in one of the following ways:Server Manager
    • Click the Server Manager icon on the taskbar:

      or

    • Click the Windows Start button and enter Server Manager in the search box. Then click the Server Manager icon
  2. To open the Wizard, click Add roles and features from the Manage menu
  3. The first page explains what the Wizard can do together with the prerequisites. Click Next to continue.
    Add roles and features
  4. Here, select Role-based or feature-based installation and click Next
    Role-based or feature-based installation
  5. Select either a server from the server pool or a virtual hard disk. Click Next
    select server
  6. The next page lists the roles you could install. We can skip this and click Next
    lists the roles
  7. On the next page, select Remote Server Administration Tools and AD DS and AD LDS Tools, which will automatically select the other Active Directory management tools. Click Next
    Remote Server Administration Tools
  8. The next page displays a summary of the tools being installed. Select the Restart the destination server automatically if required checkbox because some of the roles and features require a server restart
  9. Click Install to start the installation
  10. On the next page, you can view the installation progress. Click Close at any time to close the wizard. The installation will continue as a running task

  11. After the installation is complete, open Server Manager and click the Tools menu to see the installed tools. The following screenshot shows Active Directory Users and Computers along with other management tools
    tools

How Lepide can Help with Active Directory Auditing

Lepide Auditor for Active Directory provides a scalable way of auditing changes made to configurations and permissions. The Lepide Solution provides answers to the important “who, what, where, and when” Active Directory auditing questions to help you bolster security, speed up investigations, mitigate the risks of privilege abuse and meet compliance requirements.

If you’d like to see how the Lepide Data Security Platform can audit Active Directory, schedule a demo with one of our engineers or start your free trial today.

Try Lepide Active Directory Auditing solution for free
x
Or Deploy With Our Virtual Appliance
Learn More...

Audit Active Directory Changes with Lepide Auditor

x
Or Deploy With Our Virtual Appliance
Learn More...