Article ID: 311555 - Last Review: December 3, 2007 - Revision: 7.4 How to Hide or Display the InetOrgPerson Object Class in Active Directory Users and Computers
This article was previously published under Q311555 SUMMARY In Windows Server 2003-and-later versions of Active
Directory, an additional object class is introduced -- the InetOrgPerson object class. InetOrgPerson is defined in RFC 2798, and it has been accepted as the de facto
standard in other Lightweight Directory Access Protocol (LDAP) directory
implementations. Active Directory has been modified to support the InetOrgPerson class, and with the addition of the User class definition, you can now create InetOrgPerson as security principals in Active Directory. This greatly enhances an administrator's capabilities to migrate user accounts from third-party directories into the Active Directory. However, this change may introduce problems with third-party programs (third-party programs are defined as any programs that use Active Directory as an authentication method). Microsoft recommends that you perform complete program compatibility testing before you use the InetOrgPerson class. For this reason, and also to avoid confusion, you may want to disable the visible references to the InetOrgPerson object type in Active Directory Users and Computers. This will prevent administrators from mistakenly creating InetOrgPerson users instead of the more accepted User type. MORE INFORMATION To enable or disable the InetOrgPerson user type in Active Directory Users and Computers, follow these
steps:
Note This is true only of Active Directory Users and Computers. You can still create the InetOrgPerson user types through other means, regardless of this setting. APPLIES TO
| Other Resources Other Support Sites
CommunityGet Help NowArticle Translations |






Windows Live
Facebook
Twitter
Linkedin
Digg it
Yahoo
Delicious
StumbleUpon
Yammer
Reddit
Technorati
FriendFeed
Email
Back to the top
