Osirium Logo

Domain Admin Users Audit

Domain Admin Users Audit Playbook IconDomain Admin Users Audit Playbook Icon

This is an interactive task that audits users with domain admin permissions in Active Directory.

A report is generated showing various statistics, including how many:

  • Users have domain admin permissions
  • Domain admin users have never logged on
  • Domain admin users have passwords older than 90 days

Playbook Files

This playbook was built for PPA version 3.3

Running this Playbook

  • Click download playbook
  • Import the playbook on the Playbooks page in PPA
  • Build the playbook from the Edit & Build tab
  • Run the playbook from the Preview & Deploy tab


Required Vault Details

Active Directory

  • IP/DNS address of a Domain Controller
  • Domain FQDN
  • Username
  • Password

The Active Directory credentials require permission to read user account information.

Vault Configuration Wizard

The first time you run a task built from this playbook, PPA will check the required Vault details exist.

If they don't exist, PPA will ask you to supply the details at the start of the task.

Below you can see a user providing details the first time they run an Active Directory task.


Once the details are added to Vault, the task won't ask for them again.

If you don't know the required details, ask an administrator to run the task or configure Vault manually.

What the Task Does

Once started, this task will:

  • Find all users with a direct or nested membership to the domain admins group
  • Audit several account attributes & UAC flags for each user
  • Generate a report containing domain admin user statistics
Product Boot Screen

Get PPA for free!

Start automating your estate with a free 30 day trial today. No signup required!

Get PPA Express


Theale Court
11-13 High Street, Theale
Reading, Berkshire, RG7 5AH
United Kingdom
+44 (0) 118 324 2444

Osirium Logo

Copyright 2020 Osirium Ltd.