CN vs OU

Common Name (CN)

  1. Represents the actual object name in AD

  2. Can be used for container objects that are not OUs (see below), such as default "Users" or "Computers" containers

  3. Used for leaf objects

Organizational Unit (OU)

  1. A container in AD that is used to organize objects

  2. Commonly used for delegation of administrative rights or to apply GPOs (Group Policy Objects)

Last updated