Synchronize HR to AD: transaction workflow

Over the past years I have developed a number of automated synchronization projects between HR systems and Active Directory. The major advantage of such a link is that any employee or organization change is pushed to the Active Directory.

VBScript: remove ACE entry from DACL based on ACE accessmask

strObject = wscript.arguments(0) 'CN=testuser,CN=Users,DC=t4evmdemo,DC=local strAccessMask = wscript.arguments(1) '131132 'example: cscript scriptname.vbs "CN=t4e_user,CN=users,DC=t4evmdemo,DC=local"

VBScript: add group ACE entry to set group administrator

strObject = wscript.arguments(0) 'CN=testuser,CN=Users,DC=t4evmdemo,DC=local strPermissionUser = wscript.arguments(1) 'T4EVMDEMOhelpdeskuser 'example: cscript receiveas.vbs "CN=t4e_user,CN=users,DC=t4evmdemo,DC=local" "T4EVMDEMOHelpdeskA"

