AD GPO Reports

 

AD Admin & Reporting Tool has a comprehensive list of Active Directory GPO reports, such as:

 

Active Directory All GPOs Report

All GPOs report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer subtreescope

 

Active Directory All Recently Deleted GPOs Report

All Recently deleted GPOs report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and isDeleted=TRUE subtreescope

 

Active Directory All Disabled GPOs Report

All Disabled GPOs report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl,flags from RootDSE where objectClass=groupPolicyContainer and flags=3 subtreescope

 

Active Directory All User Settings Disabled GPOs Report

All User Settings Disabled GPOs report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl,flags from RootDSE where objectClass=groupPolicyContainer and (flags=3 or flags=1) subtreescope

 

Active Directory All Enabled GPOs Report

All Enabled GPOs report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=printqueue and userAccountControl:1.2.840.113556.1.4.803:!=2 subtreescope

 

Active Directory All GPOs Created Today Report

All GPOs Created Today report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and createTimestamp <= CurrentEndofDay and createTimestamp >=CurrentStartofDay
subtreescope

Active Directory All GPOs Created Yesterday Report

All GPOs Created Yesterday report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and createTimestamp <= CurrentEndofDay -1 days and createTimestamp >=CurrentStartofDay -1 days
subtreescope

 

Active Directory All GPOs Created in Last 7 Days Report

All GPOs Created in Last 7 Days report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and createTimestamp >= CurrentTimestamp -7 days subtreescope

 

Active Directory All GPOs Created in Last 30 Days Report

All GPOs Created in Last 30 Days report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and createTimestamp >= CurrentTimestamp -30 days subtreescope

 

Active Directory All GPOs Created in Last 60 Days Report

All GPOs Created in Last 60 Days report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and createTimestamp >= CurrentTimestamp -90 days subtreescope

 

Active Directory All GPOs Created in Last 90 Days Report

All GPOs Created in Last 90 Days report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and createTimestamp >= CurrentTimestamp -90 days subtreescope

 

Active Directory All GPOs Created between.. Report

All GPOs Created between the dates specified report is created using the following sqlldap statement, you can specify from and to timestamp in the popup dialog.

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and createTimestamp >=$Timestamp1 and createTimestamp <=$Timestamp2 subtreescope

 

Active Directory All GPOs Modified Today Report

All GPOs Modified Today report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and modifyTimestamp <= CurrentEndofDay and modifyTimestamp >=CurrentStartofDay
subtreescope

 

Active Directory All GPOs Modified Yesterday Report

All GPOs Modified Yesterday report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and modifyTimestamp <= CurrentEndofDay -1 days and modifyTimestamp >=CurrentStartofDay -1 days
subtreescope

 

Active Directory All GPOs Modified in Last 7 Days Report

All GPOs Modified in Last 7 Days report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and modifyTimestamp >= CurrentTimestamp -7 days subtreescope

 

Active Directory All GPOs Modified in Last 30 Days Report

All GPOs Modified in Last 30 Days report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and modifyTimestamp >= CurrentTimestamp -30 days subtreescope

 

Active Directory All GPOs Modified in Last 60 Days Report

All GPOs Modified in Last 60 Days report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and modifyTimestamp >= CurrentTimestamp -60 days subtreescope

 

Active Directory All GPOs Modified in Last 90 Days Report

All GPOs Modified in Last 90 Days report is created using the following sqlldap statement

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and modifyTimestamp >= CurrentTimestamp -90 days subtreescope

 

Active Directory All GPOs Modified between.. Report

All GPOs Modified between the dates specified report is created using the following sqlldap statement, you can specify from and to timestamp in the popup dialog.

Select cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and modifyTimestamp >=$Timestamp1 and modifyTimestamp <=$Timestamp2 subtreescope

 

Active Directory All GPOs Specified Attribute is null or not present

All GPOs where specified attribute is null report is created using the following sqlldap statement, you can specifiy the attribute in the popup dialog.

Select mail, cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and $Attribute is null subtreescope

 

Active Directory All GPOs Specified Attribute is not null or present

All GPOs where specified attribute is not null report is created using the following sqlldap statement, you can specifiy the attribute in the popup dialog.

Select mail, cn,creatorsName,createTimeStamp,modifiersName,modifyTimeStamp,sAMAccountName,userAccountControl from RootDSE where objectClass=groupPolicyContainer and $Attribute is not null subtreescope

 


Ldapsoft Home page AD Admin & Reporting Tool Home Page