Forum Discussion

OSGDan's avatar
OSGDan
Copper Contributor
Sep 06, 2019
Solved

Does implementing AD Recyle Bin cause issues with trying to recover deleted users prior to implement

Work for a consulting firm that focuses on small business. Many do not have AD Recycle Bin enabled. Team members spend too much time using LDP to recover deleted users. So I have recommended we imple...
  • HidMov's avatar
    Sep 07, 2019

    Hi OSGDan 

     

    I hadn't come across your particular issue previously, but I'm not sure I've had to restore any users from before AD Recycle Bin had been enabled so I've just run your scenario in my lab and replicated the problem; the objects I deleted before the Recyle Bin was recovered could not be restored via LDP.

     

    I've done a bit more digging and found the following MS document on this:

     

    https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2008-R2-and-2008/dd379542(v=ws.10)

     

    One of the blue boxes shows that this any deleted objects before the Recycle bin is enabled cannot be restored via LTP because they are not deleted objects anymore, but rather Recycled Objects

     

     

    It seems that an authoritative restore is the only way to get these objects back. I've always backed up AD before enabling Recycle Bin in a production environment anyway just in case things go south but hadn't realized before that enabling Recycle Bin would banjax anything already deleted.

     

    Hope this helps,

     

    Mark

     

     

Resources