How to create container objects in Active Directory (NOT OU’S!)

It may happen that when you install a program you need to create Active Directory Container. In my case this was the System Center 2012 Virtual Machine Manager (SP1). What most people probably think is that they have to create an OU (Organizational Unit), but that is not the case.

There are a few differences between an Active Directory Container and an Active Directory OU. The main difference is that Group Policy Objects (GPO) cannot be applied to a container.

The Active Directory Users and Computers program will not give the option the create Container objects by default (right click, new). But with the following procedure, you can enable this. (You have to be member of the “Schema Admins” security group)

Enable_create_container_objects_in_AD_step1

Open “Adsiedit.msc”, richt click “ADSI Edit” and click on “Connect to…”

Enable_create_container_objects_in_AD_step2

Select “Schema” by “Select a well known Naming Context” and press the “OK” button

Enable_create_container_objects_in_AD_step3

In the left plane select “Schema,CN=Configuration,DC=domain,DC=lan” and look in the right plane for “CN=Container”. Open its properties.

Enable_create_container_objects_in_AD_step4

Change the value of “defaultHidingValue” to “FALSE” and press the “OK” button.

Enable_create_container_objects_in_AD_step5

Open (or reopen) the Active Directory Users and Computers program (check if Advanced Features are visible), right click on the domain name or any Container/OU and select the “New” option. The Container option is now also listed in the list of objects.

12 comments

About Robin Hobo

Robin Hobo

I work as a Senior Solution Architect with focus on the Modern Workspace. I am specialized in Azure Virtual Desktop (AVD), Windows 365 and Microsoft EM+S (including Microsoft Endpoint Manager - Microsoft Intune).

For my full bio, check the About Me page. You can also join me on the following social networks:

By continuing to use the site, you agree to the use of cookies. more information

The cookie settings on this website are set to "allow cookies" to give you the best browsing experience possible. If you continue to use this website without changing your cookie settings or you click "Accept" below then you are consenting to this.

Close