Featured tool · open source ADOutline A single-file, read-only PowerShell script that documents the current state of an Active Directory forest in one run — topology, trusts, DNS, certificate services, hybrid identity signals and more. View on GitHub ADOutline on GitHub Recognition Microsoft MVP Awarded by Microsoft for community contribution in enterprise identity and security. Thirty years of hands-on work across Active Directory, Entra ID, Microsoft 365 and Zero Trust architecture. View MVP profile Consulting SAG Business Group Identity and access management, Zero Trust and Entra ID assessments, architecture reviews, consulting and training — led by a Microsoft MVP with three decades of enterprise experience. Work with SAG Guide · migration Active Directory User Migration A graphical walkthrough of the high level steps involved in an Active Directory migration using ADMT — trusts, SID filtering, password export and account merging. Read the guide Active Directory user migration steps Guide · migration Computer Migration Points to consider when migrating workstations, applicable to any tool — ADMT, NetIQ, Quest and others. Includes a full pre-migration, migration and post-migration task flow. Read the guide Computer migration flow chart Guide · identity User Migration and Merging Pre-creating user accounts in the target domain is common with single sign-on and HR-driven provisioning. This walks through merging them correctly with intact SID history using Quest Migration Manager. Read the guide User migration and merging Community SS Technology Forum A community space for Microsoft identity, security and infrastructure discussion — post a question, share a script, or work through a migration problem with others. Visit the forum SS Technology Forum Reference · security Microsoft Rights Management Service How RMS works as an add-on to RMS-aware applications, and how to combine it with Exchange to increase email security across the organisation. Read the article Microsoft Rights Management Service Reference · perimeter Microsoft ISA Server Most of us have hit this one: what happens when the ISA Server is a member of the Active Directory domain? An article series on the trade-offs, the supported designs, and whether it is actually a problem. Read the series Microsoft ISA Server article series
Tool series

Outline

Current-state documentation. One read-only script per environment, producing a single self-contained HTML report of what is actually configured — no scoring, no remediation.

View ADOutline on GitHub

Atlas

Point-in-time maps of identity and infrastructure — structure, relationships and configuration, without analysis or scoring.

Browse on GitHub

Canvas

Visualisation of identity systems across on-premises and cloud — clarity on structure, access relationships and security posture.

Browse on GitHub

Lens

Compare an environment against an earlier record of itself, so configuration drift is reported rather than assumed.

Browse on GitHub

Sunday, August 9, 2026

ADOutline - Active Directory Documentation Tool

ADOutline -  Active Directory Documentation Tool
ADOutline Automated Active Directory Documentation for the Hybrid Identity Era   ADOutline: Active Directory Documenta...

Free Open-Source Tools for Identity, Security, Microsoft 365, Intune, Defender, and Active Directory

SAG Business Group sagbusinessgroup.com
  Free Open-Source Tools for Identity, Security, Microsoft 365, Intune, Defender, and Active Directory One of the most practical ways to c...

Free Identity and Security Labs, Mentoring, and Community Learning

SAG Business Group sagbusinessgroup.com
  From Theory to Hands-On Experience: Free Identity and Security Labs, Mentoring, and Community Learning There is an enormous difference b...
Popular Posts
Workstation Trust Relationship Issue Issue: You receive the following error message, when you try to login to the domain.  The security database on the server does not have ... ADMT Service Account - Permission and Configuration The ADMT service account needs to have proper permission in source and target domains.  You don’t need to use 2 separate accounts.  You can ... My First Peek into Microsoft Exchange 2010 By Santhosh Sivarajan Before I really dive into Exchange 2010, I thought I would install and play with it first. I took some screen shots and notes during the ins... ObjectSID and Active Directory What is an objectSID in Active Directory? When a new object is created in Active Directory, Domain Controller assigns a unique value used ... AD Group Report - List Group Members in Active Directory–PowerShell Script Updated Script - http://portal.sivarajan.com/2011/10/search-ad-collect-local-admin-group.html Script #1 This script... Add Users to a Group–PowerShell Script Purpose – Add users to a group from an input file – PowerShell V2 Script.  Input file – Input file (Users.csv) contains samAccountName in... User Account Migration and Merging – Part I (ADMT) Part I - User Account Migration and Merging Using ADMT Part II - User Account Migration and Merging Using QMM pre-creating user account ... User Account Migration and Merging – Part II (Quest Migration Manager) Part I - User Account Migration and Merging Using ADMT Part II - User Account Migration and Merging Using QMM Pre-creating user account in... Delete Stale or Inactive Computer Accounts from Active Directory Here is an easy way to identify and delete inactive or stale computers in an Active Directory environment.  Using the dsquery command you c... Converting PowerShell (PS1) to EXE / Standalone Application As we know, there many applications available to convert a PowerShell file to a standalone executable file.  Based on my experience, PowerSh...