Skip to content

Update ActiveDirectory.ps1#42

Open
Vilonauzd wants to merge 1 commit intoteamviewer:mainfrom
Vilonauzd:patch-1
Open

Update ActiveDirectory.ps1#42
Vilonauzd wants to merge 1 commit intoteamviewer:mainfrom
Vilonauzd:patch-1

Conversation

@Vilonauzd
Copy link

-Prevents @*.local email addresses from ever syncing to TeamViewer, even if mail or legacy attributes are misconfigured

-Fixes incorrect reliance on the mail attribute in non-Exchange on-prem AD environments where it is empty or wrong

-Ensures UPN (userPrincipalName) is treated as authoritative when it contains a valid external domain

-Stops TeamViewer from auto-creating accounts with non-routable internal domains

-Preserves existing group membership search logic (recursive/non-recursive behavior unchanged). -Properly parses SMTP entries in proxyAddresses without assuming Exchange schema usage

-Eliminates silent fallbacks that previously defaulted to user@domain.local

-Adds a hard guard rail so invalid internal domains cannot reappear via future schema changes or bad data.

-Supports mixed environments (some users with UPN only, some with legacy attributes)

-Adds an operator-controlled fallback to construct samAccountName@externaldomain when no valid external address exists.

-Ensures the fallback decision is prompted once per run, avoiding repetitive prompts

-Prevents duplicate or conflicting emails by deduplicating candidate values

-Keeps TeamViewer account matching stable by supplying consistent, externally valid identifiers

-Avoids any dependency on Exchange, Entra ID Connect, or O365 schema extensions

-Prevents @*.local email addresses from ever syncing to TeamViewer, even if mail or legacy attributes are misconfigured

-Fixes incorrect reliance on the mail attribute in non-Exchange on-prem AD environments where it is empty or wrong

-Ensures UPN (userPrincipalName) is treated as authoritative when it contains a valid external domain

-Stops TeamViewer from auto-creating accounts with non-routable internal domains

-Preserves existing group membership search logic (recursive/non-recursive behavior unchanged).
-Properly parses SMTP entries in proxyAddresses without assuming Exchange schema usage

-Eliminates silent fallbacks that previously defaulted to user@domain.local

-Adds a hard guard rail so invalid internal domains cannot reappear via future schema changes or bad data.

-Supports mixed environments (some users with UPN only, some with legacy attributes)

-Adds an operator-controlled fallback to construct samAccountName@externaldomain when no valid external address exists.

-Ensures the fallback decision is prompted once per run, avoiding repetitive prompts

-Prevents duplicate or conflicting emails by deduplicating candidate values

-Keeps TeamViewer account matching stable by supplying consistent, externally valid identifiers

-Avoids any dependency on Exchange, Entra ID Connect, or O365 schema extensions
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant