I think Chris is pointing to his UDF fnLDAPQuery() - Uses ADO to query Active Directory using LDAP dialect .

Maybe a stupid suggestion cause I’m not so familiar with LDAP and querying AD but cant you use the Last-Logon attribute to see if the user has not logged on for lets say 90 days and delete/disable/reset password/ or whatever based on what the query gives you.


Edited by Mart (2006-05-30 04:33 PM)
_________________________
Mart

- Chuck Norris once sold ebay to ebay on ebay.