Administer Groups in Active Directory automatically, based on User account attributes.
Create a script (based on Quest Powershell) which is creating new groups, deleting empty groups and modifying group memberships.
Each user object in Active Directory needs to be checked automatically if it is member of the corresponding group.
Empty groups need to be deleted, non existing groups need to be created.
User X in Active Directory has the following attributes filled :
Location = AN99
Company = Company 99 Asia AG
Group naming = "Org-"&<Location>&<Company ... without spaces>
(1) With this attributes the user must become a member of the group :
(1.1) if this group is not existing, create it and make the user a member of it
(2) If User X was in a different “Org-xxyy-*” group before, remove him from this group and add him to the new one
(3) If there is a group “Org-xxyy-*” whitout group members, delete it
Freelancer is responsible for a test environment.