AD-USER-16 - User home directory count should be retrievable
Overviewβ
The HomeDirectory attribute points users to network-based storage locations. While useful in legacy environments, it can reveal older provisioning patterns and dependencies on file servers.
- Legacy infrastructure visibility: Identifies users tied to mapped-drive style home folders
- Access control review: Highlights centralized storage paths that may contain sensitive data
- Modernization planning: Helps quantify remaining on-premises file service dependencies
Security Recommendationβ
- Review home directory locations for proper ACLs and ownership controls
- Confirm the attribute is still required for active users
- Retire obsolete mappings and legacy storage dependencies where feasible
How the Test Worksβ
This test counts user objects where the HomeDirectory attribute contains a non-empty value.
Related Testsβ
Test-MtAdUserProfilePathCount- Finds roaming profile dependenciesTest-MtAdUserScriptPathCount- Identifies legacy logon automation
Test Metadataβ
| Field | Value |
|---|---|
| Test ID | AD-USER-16 |
| Severity | Info |
| Suite | Active Directory |
| Category | AD.User |
| PowerShell test | Test-MtAdUserHomeDirectoryCount |
| Tags | AD, AD-USER-16, AD.User |
Sourceβ
- Pester test:
tests/ad/user/Test-MtAdUserHomeDirectoryCount.Tests.ps1 - PowerShell source:
powershell/public/ad/user/Test-MtAdUserHomeDirectoryCount.ps1

