Direct Inward Dialing: +1 408 916 9393
ADManager Plus' AD reports offer administrators all the essential information they need about their AD infrastructure and objects. This web-based AD reporting tool's report library contains over 200 out-of-the-box reports. These reports fetch vital data such as users' real last logon times, inactive AD users, group members including nested group members, NTFS permissions, recently created, modified, or deleted user accounts, distribution lists, security groups and their members, and GPOs.
Unlike with conventional Microsoft tools and complicated PowerShell scripts, ADManager Plus enables you to easily generate AD reports for users, distribution lists, security groups, computers, and contacts, with no programming necessary. This purely GUI-based AD reporting software also helps you generate reports on Exchange Server mailboxes, Microsoft 365, Exchange Online, Google Workspace, Skype for Business (formerly Lync and LCS), and more from a single console.
ADManager Plus, AD reporting software, is loaded with the following reports:
Report Name | Description |
---|---|
All Users report | Lists all Active Directory user accounts, including inactive AD users. |
Real last logon | Shows the real last logon time of users in the selected domain. |
Users' group membership report | Lists all groups in which the selected users are members. |
Inactive Users | Lists all users with no logon activity during the specified period. |
All computers | Lists all computer accounts located in the selected AD domain. |
Locked out users | Shows all the locked out users accounts in Active Directory |
Inactive computers | Shows computers that have been inactive for the specified time frame. |
Recently bad logged users | Shows all user accounts for which the specific attributes are empty. |
Disabled users | Lists all disabled user accounts in the specific AD domains. |
Never logged on | Fetches user accounts from which no logon activity has even happened. |
Users with password never expires | Displays user accounts whose password expiry date is set as never. |
Recently logged on | Displays all AD users who logged during the specified period. |
Soon to expire | Lists user accounts that will expire during the specified time period. |
OS based computers | Fetches all computers running on the specified OS version. |
Groups without members | Fetches all the empty groups present in Active Directory. |
Permissions for folders | Shows users and groups with access to the selected shared folders. |
Shares on server | Lists all shared folders in the chosen servers with their permissions. |
All Users | Lists all Active Directory user accounts, including inactive AD users. |
Users with Empty Attributes | Shows all user accounts for which the specific attributes are empty. |
Users with Duplicate Attributes | Displays all users who have the same value for the specified attribute |
Users Without Managers | Fetches all user accounts for which the manager attribute is empty. |
Manager Based Users | Identifies all users with the same value for the manager attribute. |
All Managers | Lists all users who are managers. / Lists all managers in the organization. |
Users in more than one group | Shows all users who are members of more than one AD group. |
Recently Deleted users | Displays all the users accounts deleted during a specified period. |
Recently Created Users | Fetches all user accounts created during the specified period. |
Recently Modified Users | Shows all user accounts modified during the mentioned time interval. |
Photo Based Reports | Lists all users who have a profile photo or the ones who don't. |
Lync/Skype Enabled Users | Displays all Skype/Lync enabled user accounts in the domain. |
Lync/Skype Disabled Users | Lists all users for whom the Skype/Lync account isn't enabled. |
Dial-in Allow Access | Shows all AD users for whom Dial-in access has been enabled. |
Dial-in Deny Access | Lists all AD users who do not have the dial-in access permission. |
Users with Logon Script | Displays user accounts a logon script assigned to them. |
Users without Logon Script | Fetches all user accounts for which no logon script is assigned. |
Users' group membership report | Lists all groups in which the selected users are members. |
Disabled Users | Lists all disabled user accounts in the specific AD domains. |
Locked-out Users | Shows currently locked out AD user accounts. |
Account Expired Users | Fetches all Active Directory user accounts that have expired. |
Recently Account Expired Users | Displays user accounts that expired during the specified time period |
Soon-to-expire User Accounts | Lists user accounts that will expire during the specified time period. |
Account Never Expires Users | Shows all user accounts for which the expiry date is set as never. |
Smart Card Enabled Users | Fetches all users for whom the smart card-based login is enabled. |
Inactive Users | Lists all users with no logon activity during the specified period. |
Recently Logged On Users | Displays all users who logged in during a specific time period. |
Logon Hour Based Report | Lists users who can logon during specific hours, or the ones who cannot. |
Users Never Logged On | Fetches user accounts from which no logon activity has even happened. |
Enabled Users | Fetches all enabled user accounts in the selected AD domain. |
Users in Groups | Lists users who are members of the chosen groups, and nested groups. |
Groups for Users | Fetches all groups in which the selected users are members. |
Report from CSV | Shows details of all AD objects mentioned in the CSV file. |
Recent Logon Failures | Lists user accounts with failed logons during the specified period. |
Users with Cannot Change Password | Shows user accounts whose passwords cannot be changed by their users. |
Users with Password Never Expires | Displays user accounts whose password expiry date is set as never. |
Users with Change Password at Next Logon | Shows user accounts whose passwords must be changed at the next logon. |
Password Expired Users | Fetches user accounts whose passwords have expired. |
Soon-to-expire User Passwords | Displays users whose passwords will expire during the chosen period. |
Password Changed Users | Lists users who changed their passwords during the specified time. |
Password Unchanged Users | Shows users whose passwords weren't changed for the chosen period. |
Group Members | Lists all members of the selected groups, and their nested groups. |
Detailed Group Members | Shows objects which are members of chosen groups and their nested groups. |
Groups Without Members | Fetches all the empty groups present in Active Directory. |
Users Only Members of Domain Users Group | Displays all users who are members of only the domain users group. |
Users Not in Groups | Lists all user accounts which are not members of the selected groups. |
Computers Not in Groups | Shows computer objects which are not members of the chosen groups. |
Users' group membership report | Lists all groups in which the selected users are members. |
All Groups | Fetches all groups available in Active Directory. |
Recently Created Groups | Shows all groups created during the specified period in AD. |
Recently Modified Groups | List all AD groups modified during the chosen time period. |
Recently Deleted Groups | Displays all groups deleted from AD during a specific time frame. |
Top N Big Groups | Lists the top N groups in AD based on their members count. |
Managed Groups | Fetches all groups for which a specific manager is assigned. |
Unmanaged Groups | Displays all AD groups which do not have a manager assigned for them. |
Security Groups | Lists all the security groups available in Active Directory. |
Distribution Groups | Shows all AD distribution groups available in the selected domain. |
Group Type and Scope | Displays all groups matching the specified group type and group scope. |
All Computers | Lists all computer accounts located in the selected AD domain. |
OS Based Report | Fetches all computers running on the specified OS version. |
Workstation Computers | Shows all computers including member servers present in AD domains. |
Domain Controllers | Displays all domain controllers (DCs) located in the chosen domains. |
Computers Trusted for Delegation | Fetches the list of all computers that are trusted for delegation. |
Bitlocker Recovery Keys | Lists all Bitlocker recovery keys stored in the selected AD domains. |
Computers with Duplicate Attributes | Shows computers accounts having same values for the chosen attributes. |
Bitlocker Enabled Computers | Lists computer accounts for which the Bitlocker encryption is enabled. |
Bitlocker Disabled Computers | Lists computer accounts for which the Bitlocker encryption is disabled. |
Active Computers | Fetches the list of all active computer objects in AD. |
Inactive Computers | Shows computers that have been inactive for the specified time frame. |
Enabled Computers | Fetches all enabled computer accounts from the selected domains. |
Disabled Computers | Displays all disabled computer accounts in the chosen domains. |
Recently Created Computers | Lists all computer accounts created during the selected period. |
Recently Modified Computers | Shows all computer accounts modified during the chosen time interval. |
Recently Deleted Computers | Displays the AD computer accounts deleted during the specified period. |
Managed Computers | Fetches computer accounts which have a manager assigned to them. |
Unmanaged Computers | Lists all computer accounts which do not have a manager. |
Users without Mailbox | Displays all users who do not have a mailbox created for them. |
Mailbox Enabled Users | Shows all AD users who have their own Exchange mailbox. |
Mail Enabled Users | Lists all mail enabled users in the selected AD domain. |
Mail Enabled Groups | Fetches all mail enabled groups present in the chosen AD domains. |
Users with Email Proxy Enabled | Shows all users who have a proxy email address. |
Groups with Email Proxy Enabled | Displays all groups which have a proxy email address. |
Default Sending Message Size | Lists users with the default sending message size limit. |
Restricted Sending Message Size | Shows all users with restrictions on the sending message size. |
Default Recipient Size | Displays users who have the default recipient size limit. |
Restricted Recipient Size | Fetches all users with restrictions on the recipient size. |
Default Receiving Message Size | Lists all users with the default receiving messages size. |
Restricted Receiving Message Size | Shows users for whom the receiving message size is restricted. |
Default Storage Limit | Displays all users with the default storage limits for their mailboxes. |
MailBox Size Limits | Fetches all users for whom mailbox size limits are set. |
Users Hidden from Exchange Address Lists | Lists users whose email address is hidden from Exchange address lists. |
Accept Messages from Everyone | Shows all users who can accept messages from everyone. |
Accept Messages Restricted | Lists all users who can accept messages only from the specified users. |
Users based on ForwardTo | Fetches all users for whom a forward to address is set. |
Distribution List Members | Lists accounts who are members of any distribution group in the domain. |
Non-Distribution List Members | Shows all accounts who are not members of any distribution group. |
OMA Enabled | Display users for whom Outlook mobile access (OMA) is enabled. |
OWA Enabled | Fetches users for whom the Outlook web access (OWA) is enabled. |
POP3 Enabled | Shows all POP3 enabled users in the domain. |
Active Sync Enabled | Fetches users for whom the ActiveSync option is allowed. |
IMAP4 Enabled | Lists user accounts for whom the IMAP4 option is enabled. |
OMA Disabled | Shows users for whom Outlook mobile access (OMA) is disabled. |
OWA Disabled | Fetches users for whom Outlook web access (OWA) is disallowed. |
POP3 Disabled | Displays users accounts who have the POP3 option disabled. |
IMAP4 Disabled | Lists users for whom IMAP4 is disabled. |
Active Sync Disabled | Shows user accounts for whom the ActiveSync option is disallowed. |
Dynamic Distribution Group Members | Shows users who are members of Microsoft 365 dynamic distribution groups. |
All Contacts | Displays all contact objects available in the selected AD domain. |
Mail Enabled Contacts | Fetches all mail-enabled contacts in the chosen domains. |
Recently Created Contacts | Shows all contact objects created during the specified period. |
Recently Modified Contacts | Lists the contact objects modified during the mentioned time interval. |
Recently Deleted Contacts | Displays contact object deleted from AD during the chosen period. |
Users' Terminal Service Properties | Displays Terminal Service settings of users in the selected domains. |
Users With Terminal Server Access | Show all user accounts for which Terminal Server access is enabled. |
All GPOs & Linked AD Objects | Lists all available GPOs along with the objects linked to them. |
Recently Created GPOs | Shows all GPOs created during the specified time interval. |
Recently Modified GPOs | Displays all GPOs edited during the selected time period. |
Disabled GPOs | Fetches all disabled GPOs available in the domain. |
Unused GPOs | Lists those GPOs that are not in use or applied to any object. |
Frequently Modified Computer Settings GPOs | Shows those GPOs whose computer settings are frequently changed. |
Frequently Modified User Settings GPOs | Displays the GPOs whose user settings are frequently edited. |
Domain Linked GPOs | Lists all GPOs that are linked to the selected domain. |
OU Linked GPOs | Shows GPOs that are linked to any OU in the selected domain. |
Site Linked GPOs | Fetches GPOs that are linked to any site in the chosen domain. |
GPO Blocked Inheritance Containers | Displays objects for which inheritance of GPO settings is blocked. |
Computer Settings Disabled GPOs | Lists all GPOs whose computer settings have been disabled. |
User Settings Disabled GPOs | Shows those GPOs whose user settings are disabled. |
Frequently Modified GPOs | Fetches those GPOs that are edited repeatedly. |
Frequently Modified GPOs | Fetches those GPOs that are edited repeatedly. |
GPOs with Script | Lists all GPOs in which logon, logoff, startup or shutdown scripts are configured. |
Linked GPOs Report | Fetches information on GPOs that are linked to the OUs or sites in a domain. |
Compare GPO versions | Lists the user and computer versions of both the AD and SYSVOL of the desired GPOs. |
Direct and Inherited GPO Links | Fetches information on all GPOs linked to the selected OUs and sites, including those inherited from parent OUs up to the root domain. |
GPOs Linked To Empty OUs | Displays GPOs linked to OUs without security principals, with options to disable or remove links. |
Unlinked GPOs | Fetches the list of GPOs that are not linked to any container in the domain. |
GPOs with Inactive Policy Settings | Lists GPOs with policy settings configured within their disabled user and computer configurations. |
GPO Delegation Report | Displays the security principals that have access to the selected GPOs and provides details on the security filters. |
GPO Settings | Lists all Administrative Templates, security settings, and GPO preference settings for user and computer configurations in the selected GPO. |
GPOs with Specific Settings | Displays the values of specific Administrative Templates and Security Settings in all or selected GPOs. |
Empty GPOs Report | Lists empty GPOs from the selected GPOs or all the empty GPOs in the domain. |
Resultant Set of Policy | Fetches the Administrative Template Policy and Security Settings applied on the selected user and computer. |
GPO Modeling | Simulates the possible Administrative Template and Security Settings that will be applied to the selected user and computer. |
Comparison of GPOs | Compare the Administrative Templates and security settings of different GPOs in your AD. |
All OUs | Shows all organizations units (OUs) available in the chosen domains. |
Empty OUs | Lists all OUs that do not contain any objects within them. |
Users-Only OUs | Fetches those OUs which contain only user accounts. |
Computers-Only OUs | Displays those OUs that contain only computer accounts within them. |
Recently Created OUs | Lists all OUs created during the specified time period. |
Recently Modified OUs | Shows those OUs that were modified during the chosen time interval. |
GPO Linked OUs | Fetches all OUs to which a GPO is linked. |
GPO Blocked Inheritance OUs | Displays the OUs for which inheritance of GPO settings is blocked. |
Shares in the Servers | Lists all shared folders in the chosen servers with their permissions. |
Permissions for Folders | Shows users and groups with access to the selected shared folders. |
Folders accessible by Accounts | Fetches all shared folders that the chosen users and groups can access |
Non-Inheritable Folders | Displays shared folders for which inheritance of permissions is blocked. |
AD Objects accessible by Accounts | Shows AD objects to which the specified users and groups have access. |
Non-Inheritable Objects | Lists all objects that cannot inherit permissions from parent objects. |
Servers accessible by Accounts | Fetches all servers that the specified users and groups can access. |
Subnets accessible by Accounts | Displays all subnets that the chosen users and groups can access. |
Server Permissions | Lists all users and groups with access to the selected servers. |
Subnet Permissions | Shows all users and groups who have access to the chosen subnets. |
Search Permissions | Search for specific permissions across AD. |
Shares in the Servers | Lists all shared folders in the chosen servers with their permissions. |
Permissions for Folders | Shows users and groups with access to the selected shared folders. |
Folders accessible by Accounts | Fetches all shared folders that the chosen users and groups can access |
Non-Inheritable Folders | Lists all objects that cannot inherit permissions from parent objects. |
Server Permissions | Lists all users and groups with access to the selected servers. |
Subnet Permissions | Shows all users and groups who have access to the chosen subnets. |
Servers accessible by Accounts | Fetches all servers that the specified users and groups can access. |
Subnets accessible by Accounts | Displays all subnets that the chosen users and groups can access. |
AD Objects accessible by Accounts | Shows AD objects to which the specified users and groups have access. |
Non-Inheritable Objects | Lists all objects that cannot inherit permissions from parent objects. |
Groups for Users | Fetches all groups in which the selected users are members. |
Group Members | Lists all users who are members of the specified groups. |
Inactive Users | Displays all users who have not logged in during the specified period. |
Locked-out Users | Shows all the locked out users accounts in Active Directory |
Users Never Logged On | Fetches user accounts from which no logon activity has even happened. |
Recently Logged On Users | Displays all AD users who logged during the specified period. |
Office 365 Users | Shows the details of all available Office 365 user accounts. |
Inactive Users | Lists Office 365 users who have not logged in for the chosen period. |
Never Logged On Users | Fetches all Office 365 users who have not logged on even once. |
Litigation Hold Enabled Mailboxes | Lists Exchange Online mailboxes with litigation hold option enabled. |
ActiveSync Enabled Users | Displays Office 365 users for whom the ActiveSync option is enabled. |
Shared Mailbox | Shows the details of all available Exchange Online shared mailboxes. |
Licensed Users | Shows all Office 365 users for whom a license has been assigned. |
Unlicensed Users | Lists Office 365 users who do not have any license assigned to them. |
License Details | Displays the details of all available Office 365 licenses. |
All Groups | Lists details of all Office 365 distribution and security groups. |
Security Groups | Shows the details of all available Office 365 security groups. |
Distribution Groups | Displays details of all Office 365 distribution groups. |
Group Members | Lists members of the chosen Office 365 groups and their nested groups. |
Dynamic Distribution Group Members | Shows users who are members of Office 365 dynamic distribution groups. |
Google Workspace Users | Lists all users in Google Workspace and their details. |
Active Users | Displays the active Google Workspace users and their important details. |
Suspended Users | Fetches the details of all the suspended users in your Google Workspace setup. |
Recently Deleted Users | Displays all recently deleted users in the past 20 days. |
Active Users | Identifies all active users in Google Workspace. |
Suspended Users | Fetches information about the suspended users in Google Workspace. |
Password Policy | Provides the details of the password policies of the selected domain(s). |
Account Lockout Policy | Provides the details of the account lockout polices of the selected domain(s). |
Printer Reports | Provides the list of Printers for the selected domain(s). |
DC Replication Status | Fetches the replication status of the selected domain controller(s). |
Lingering Objects | Lists the lingering objects in your AD so you can remove them. |
Identity Risk Assessment report | Identifies the potential identity risk indicators in your AD and M365 environments. |
Active Directory stores information about the entities in your network and is quite sensitive to changes. It's important to keep an eye on your Active Directory at all times to ensure that it is up to date with information and there are no potential loopholes in it. Active Directory reporting helps you gain visibility into your AD structure, configured permissions, group memberships, group policies, and more.
Native Active Directory reporting involves PowerShell and can be quite cumbersome at times. While you can generate reports using scripts, it can be difficult to keep track of the information obtained from running these scripts. Instead, you can generate AD reports using ADManager Plus, a unified AD management and reporting tool, that comes with over 200 predefined reports that are completely script free.
ADManager Plus comes with built-in reports that can be generated at the click of button. These reports are comprehensive and help administrators understand what's happening in their Active Directory. They can be generated and exported in formats like CSV, PDF, and more, and can be scheduled and emailed to stakeholders.
ADManager Plus' dashboard provides a holistic view of your Active Directory health and can be customized with widgets and reports of your choice. Apart from the over 200 reports, you can also customize and build reports to suit your organization's policies.
Your Active Directory health has to be regularly checked to prevent downtime and to optimize performance. The most popular way of checking your Active Directory health, involves a PowerShell command called DCDiag, which screens your domain controllers (DCs) for problems, since DCs are the backbone of your AD network. It screens your DCs for replication issues, connectivity issues, and more and provides an overview of the health of your DCs.
AD health can also be checked using the various reports in ADManager Plus. One such report is the DC Replication Status report, which displays the replication status of all your DCs, troubleshoots replication errors, and provides remediation measures. In addition to this, replication can be forced directly from these reports at the click of a button. Learn more about this report.
Make your everyday Active Directory management tasks easy and light with ADManager Plus's AD Management features. Create, modify and delete users in a few clicks!
Reset password and set password propertied from a single web-based console, without compromising on the security of your AD! Delegate your password-reset powers to the helpdesk technicians too!
Unload some of your workload without losing your hold. Secure & non-invasive helpdesk delegation and management from ADManager Plus! Delegate powers for technician on specific tasks in specific OUs.
Create and manage Exchange mailboxes and configure mailbox rights using ADManager Plus's Exchange Management system. Now with support for Microsoft Exchange 2010!!
Get rid of the inactive, obsolete and unwanted objects in your Active Directory to make it more secure and efficient...assisted by ADManager Plus's AD Cleanup capabilities.
A complete automation of AD critical tasks such as user provisioning, inactive-user clean up etc. Also lets you sequence and execute follow-up tasks and blends with workflow to offer a brilliant controlled-automation.
Need Features' Tell Us
If you want to see additional features implemented in ADManager Plus, we would love to hear. Click here to continue