Skip to main content
AD Academy
Back to all recipes
Level: JuniorLast updated:

Add a user to a group

Add-ADGroupMember -Identity "IT-Support" -Members jdoe
Get-ADGroupMember -Identity "IT-Support" | Select-Object Name,SamAccountName

Why it works this way

Rights in AD are granted through groups, not to individual users. The most common helpdesk action.

Command breakdown

ParameterWhy it works this way
-IdentityThe group you add to — not the user. A common mix-up.
-MembersAccepts a comma-separated list to add several users at once.

Watch out

  • Membership changes only apply after sign-out/sign-in — groups live in the Kerberos ticket.
  • Always verify with Get-ADGroupMember.

Related events

Similar recipes