Formalize your employee termination / deprovisioning process. Make sure compliance and security mandates are met. Implementing this Scope Action gives you the chance to sit with HR and make sure that the same procedures happen, the same way, EVERY TIME! No more staying late on Friday to pull reports or clean up AD. Simplify with this 1-click option and add customization to make it your own!
WARNING: This Scope Action will make changes to Active Directory – USE WITH CAUTION
This Terminate Employee Scope Action will:
- Generate a Group Membership report – A simple report showing you which AD Groups the targeted user(s) are members of.
- Logoff all active/current sessions – An action that ends the targeted user(s) active sessions and displays a message to the user. – Edits needed
- Generate a User Login History report – A simple report showing you the targeted user(s) login history, this tells you the machines the user(s) has been using
- Clean up Active Directory – An action that sets the password to expired, sets the user account to disabled, and moves the user to the “terminated user” OU – Edits needed
- Remove Group Memberships – An action that removes all the AD Group memberships for the targeted user(s)
Actions 2 and 4 need to be edited/adjusted for your environment.
Add more to this Scope Action as needed. You can optionally move files and folders, export the user mailbox, delete roaming profiles, etc. Read this tutorial for additional ideas.
- Download and install the GSA file (requires Goverlan Scope Actions)
- Adjust the Scope to target the user(s) queued for termination
- Adjust the actions to suit your needs
- Run it!
- Turn this Scope Action into a custom action – See how!