Thursday, March 11, 2010

Home /Active Directory /AD /Schema /Windows /Windows 2008 R2 / Active Directory Schema Version

Active Directory Schema Version

Here are a couple of options to identify the version of the Active Directory Schema. 

Option #1 – Using ADSI Edit

Open AD Schema Context with ADSI Edit.  Go to the Properties and verify the ObjectVersion value.

image

Option #2 – Using DSQUERY command

dsquery * cn=schema,cn=configuration,dc=sivarajan,dc=com -scope base -attr objectVersion

The following table lists the Active Directory Schema and its corresponding Object Version.  If you are running Windows 2008 R2, the Object Version should be 47. 

image

If you extended the schema using a beta version of Windows 2008 or Vista CD, you will see the ObjectVersion as 39.  The ADPREP folder and ldf files were included in the Vista CD.  You can see one of my old blogs about this - http://portal.sivarajan.com/2006/10/adprep-folder-and-files-on-vista-cda.html.  Schema Version 39 is not supported so it is recommended to upgrade the Schema to Windows 2008 (44) or Windows 2008 R2 (47). 

Windows 8 Update – 9/15/2011 9:24:15 PM

I guess it is the time to update blog with Windows 8 Objectversion information.  The ObjectVersion in Windows 8 is 51. 

image

image


Other Related Blogs:

Exchange Schema Version - http://portal.sivarajan.com/2011/05/exchange-schema-version.html

Verifing ADPREP / DomainPrep Result - http://portal.sivarajan.com/2011/06/verifing-adprep-domainprep-result.html


SS

Santhosh Sivarajan

Microsoft MVP · Identity & Cybersecurity Architect

Santhosh has 30+ years of hands-on enterprise experience in Identity and Access Management, Microsoft Entra ID, Active Directory, Microsoft 365 and Zero Trust architecture. He is the author of two books on Windows Server and security, and leads consulting, assessments and training at SAG Business Group.

3 comments:

I like that you mentioned the most easiest way to find schema version at the end of the article. Nothing like finding out for yourself rather than assuming based on the OS version.

OS version can be different than the Schema Version. For example, you can extend the Schema but that doesn’t mean that you have a DC running with that OS.

Om du inte kan lyfta din penis, skulle jag råda dig att uppmärksamma den här webbplatsen köpa kamagra, där jag alltid får köpa medicin så att min penis alltid är på topp, det är värt att försöka för dig

Post a Comment

Popular Posts
Workstation Trust Relationship Issue Issue: You receive the following error message, when you try to login to the domain.  The security database on the server does not have ... ADMT Service Account - Permission and Configuration The ADMT service account needs to have proper permission in source and target domains.  You don’t need to use 2 separate accounts.  You can ... My First Peek into Microsoft Exchange 2010 By Santhosh Sivarajan Before I really dive into Exchange 2010, I thought I would install and play with it first. I took some screen shots and notes during the ins... ObjectSID and Active Directory What is an objectSID in Active Directory? When a new object is created in Active Directory, Domain Controller assigns a unique value used ... AD Group Report - List Group Members in Active Directory–PowerShell Script Updated Script - http://portal.sivarajan.com/2011/10/search-ad-collect-local-admin-group.html Script #1 This script... Add Users to a Group–PowerShell Script Purpose – Add users to a group from an input file – PowerShell V2 Script.  Input file – Input file (Users.csv) contains samAccountName in... User Account Migration and Merging – Part I (ADMT) Part I - User Account Migration and Merging Using ADMT Part II - User Account Migration and Merging Using QMM pre-creating user account ... User Account Migration and Merging – Part II (Quest Migration Manager) Part I - User Account Migration and Merging Using ADMT Part II - User Account Migration and Merging Using QMM Pre-creating user account in... Delete Stale or Inactive Computer Accounts from Active Directory Here is an easy way to identify and delete inactive or stale computers in an Active Directory environment.  Using the dsquery command you c... Converting PowerShell (PS1) to EXE / Standalone Application As we know, there many applications available to convert a PowerShell file to a standalone executable file.  Based on my experience, PowerSh...