Home / DSRAZOR for Windows

Query Active Directory Security and User Attributes

DSRAZOR for Windows

  • Query Active Directory security attributes
  • Query Active Directory user objects
  • Manage Active Directory objects from within your query

Query and modify Active Directory security attributes

DSRAZOR for Windows makes finding and documenting critical Active Directory data a breeze. Quickly find and address security weaknesses directly from your query. DSRAZOR helps you efficiently manage and secure Active Directory without unwanted hassle.

No scripting required
Intuitive graphical interface makes it easy to perform and automate tedious Active Directory queries
Modify queried objects directly
Quickly disable/delete objects, add missing attributes, remove unwanted permissions, and more.
Fully customizable
Each query can be fully customized using pre-built rules and filters. DSRAZOR includes rule filters to retrieve obscure values such as the user permissions "Send As", "Allowed to Authenticate", "Receive As", "User Change Password" and "User Force Change Password".
DSRAZOR for Windows Active Directory User Management Applets

Quickly uncover:

    Last Logon Time Report per User per Domain Controller
    Users created in past 7 days
    Objects with GPO(s) defined
    Computer Accounts with no logon for past 30 days
    Trustees with Administrative permissions
    Duplicate Objects Change Profile Path
    Accounts with a NULL ACL (indicates everyone has full permission)
    Invalid SIDs in ACL Trustees plus removal
    ACEs (individual entries within ACLs) that deny permissions
    Effective and Pass-through permissions
    Accounts where the last logon failed
    Accounts locked by intruder detection

Query Active Directory and User Accounts

DSRAZOR for Windows provides you with a variety of queries to solve your Active Directory User Account Reporting problems without scripting. Below you will find a sample listing of ready-to-run queries we include.

  • Active Directory Account Security Details Report
  • Active Directory Objects with the "Send As" privilege
  • Active Directory Trustees with Admin privileges
  • Add Profile Path to user accounts without one
  • Change Profile Path - any component: server name, share and directory
  • Change Password
  • Containers with No Objects
  • Create Users with Require Attributes
  • Disabled User Accounts
  • Duplicate Accounts (CN= is the same)
  • Expired User Accounts
  • Find Unused User Accounts
  • Find User Accounts created in past X days
  • Find User Accounts with no Home Directory and assign one
  • Group Membership
  • Groups that are members of Groups
  • Locked User Accounts
  • Mandate selected attributes be populated prior to user creation - ensure accounts are properly created
  • Objects with Group Policy Objects defined and list any account policies
  • Password Settings Strength
  • Query users, groups, and so on with any combination of rules
  • Smart Delete (Deletes: User Account, Exchange Account and Home Directory!)
  • User Accounts that are disabled, locked or expired
  • User Accounts with Dialin Permissions
  • User Accounts with password problems where you can define which password problems to report on
  • Users created in the last 'n' number of days
  • View Home Directory Sizes
  • Users that never expire or whose last logon failed or who have never logged in
Free Trial Request a Demo Request a Quote

Get a free trial of DSRAZOR for Windows today!

DSRAZOR includes 1 YEAR of our world class support!

Unlimited Training

We'll make sure you can take advantage of everything DSRAZOR has to offer.

Unlimited Support

Our rapid-response support team can assist with any questions you may have.

Custom Applet Design

Need more? Just ask! We'll create a custom solution that fits your needs.