MsExchange Blog Spot Telnet25

November 12, 2013

The requested search root “microsoft security groups” is not within the scope of this operation. Cannot perform searches outside the scope ‘’

Filed under: General — telnet25 @ 8:07 pm

The reason you are receiving this error, you are running PowerShell command from Child domain and you like to see the Groups located on the root domain. In order to see these groups and continue to carry on your task all you need to do it to change your setting to view entire forest, this is almost same as opening ADUC and trying to located users or groups within the child domain, when these users or groups actually sits on the root domain. You don’t see it because your query is being performed on the child domain only.

see the settings

Get-AdServerSettings | fl


To change that

Set-AdServerSettings -ViewEntireForest $True



Now you wont have the errors if you carry on the same task



Oz Casey, Dedeal

( Exchange Server North America MVP)

MCSE 2003, M+, S+, MCDST
Security+, Project +, Server + (Blog) (Blog)


Leave a Comment »

No comments yet.

RSS feed for comments on this post. TrackBack URI

Leave a Reply

Fill in your details below or click an icon to log in: Logo

You are commenting using your account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s

Blog at

%d bloggers like this: