Date: Wed, 19 Jul 2006

Why is it that you cannot create an OU within the Users container?  I know
technically why but I'm wondering why Microsoft designed it this way.  That
seems like a logical place to segregate users for group policy application.
Are there best practices someone can refer me to for AD orgainzation?  It
just seems a bit sloppy to add a bunch of user OU's right off the root, but
I'm wondering if this is how it's normally done.