855 words
4 minutes

Enable the Active Directory Recycle Bin in Windows Server 2012 R2

Cover image for Enable the Active Directory Recycle Bin in Windows Server 2012 R2

This article is for those looking for a detailed and clear guide on how to enable the Active Directory Recycle Bin in Windows Server 2012 R2.

The Active Directory Recycle Bin is designed to recover deleted Active Directory objects and can be of great help to an administrator if he accidentally deleted a large number of user accounts.

IMPORTANT

In this guide, we will consider the case when you already have a server with the Windows Server 2012 R2 operating system installed on it.

For details on installing Windows Server 2012 R2, read my guide: Install Windows Server 2012 R2.

NOTE

To learn how to install Active Directory Domain Services on Windows Server 2012 R2, read: Install Active Directory Domain Services on Windows Server 2012 R2.

By default, the Active Directory Recycle Bin is disabled.

To enable the Active Directory Recycle Bin, open “Server Manager”, click on “Tools” in the upper right corner of the screen and select “Active Directory Administrative Center”.

Enable the Active Directory Recycle Bin in Windows Server 2012 R2 - Step 1

In the menu on the left, select the section with your domain, then in the menu on the right, click on the “Enable Recycle Bin” button.

Enable the Active Directory Recycle Bin in Windows Server 2012 R2 - Step 2

Now you need to confirm enabling the Active Directory Recycle Bin.

NOTE

It will not be possible to disable the Active Directory Recycle Bin in the future.

Click on the “OK” button.

Enable the Active Directory Recycle Bin in Windows Server 2012 R2 - Step 3

The Active Directory Recycle Bin process has started.

Next, you need to update the information in the “Server Manager” and wait for a little while all the domain controllers in the Active Directory forest get the information about enabling the Active Directory Recycle Bin.

Click on the “OK” button.

Enable the Active Directory Recycle Bin in Windows Server 2012 R2 - Step 4

In the “Server Manager” click on the arrow icon in the upper right corner of the screen and wait for the information to be updated in the section with your domain.

Enable the Active Directory Recycle Bin in Windows Server 2012 R2 - Step 5

After updating the information in the “Server Manager” in the section with your domain, a new container “Deleted Objects” will appear.

Enable the Active Directory Recycle Bin in Windows Server 2012 R2 - Step 6

Now let’s delete the user account and try to restore it from the Active Directory Recycle Bin.

Go to the “Users” container and select a user account, then click on the “Delete” button in the menu on the right.

Enable the Active Directory Recycle Bin in Windows Server 2012 R2 - Step 7

Now you need to confirm the deletion of the user account.

Click on the “OK” button.

Enable the Active Directory Recycle Bin in Windows Server 2012 R2 - Step 8

To restore a deleted user account, you need to go to the “Deleted Objects” container and select the user account that you want to restore, then click on the “Restore” button in the menu on the right.

NOTE

Objects can only be restored during their lifetime, which by default is 180 days.

Enable the Active Directory Recycle Bin in Windows Server 2012 R2 - Step 9

The user account was successfully restored and reappeared in the Users container.

Enable the Active Directory Recycle Bin in Windows Server 2012 R2 - Step 10


Patreon Exclusives#

🏆 Join my Patreon and dive deep into the world of Docker and DevOps with exclusive content tailored for IT enthusiasts and professionals. As your experienced guide, I offer a range of membership tiers designed to suit everyone from newbies to IT experts.


Tools I Personally Trust#

If you’re building things, breaking things, and trying to keep your digital life a little saner (like every good DevOps engineer), these are two tools that I trust and use daily:

🛸 Proton VPN - My shield on the internet. It keeps your Wi-Fi secure, hides your IP, and blocks those creepy trackers. Even if I’m hacking away on free café Wi-Fi, I know I’m safe.

🔑 Proton Pass - My password vault. Proper on-device encryption, 2FA codes, logins, secrets - all mine and only mine. No compromises.

These are partner links - you won’t pay a cent more, but you’ll be supporting DevOps Compass. Thanks a ton - it helps me keep this compass pointing the right way 💜


Gear & Books I Trust#

📕 Essential DevOps books
🖥️ Studio streaming & recording kit
📡 Streaming starter kit


Social Channels#

🎬 YouTube
🐦 X (Twitter)
🎨 Instagram
🐘 Mastodon
🧵 Threads
🎸 Facebook
🦋 Bluesky
🎥 TikTok
💻 LinkedIn
📣 daily.dev Squad
✈️ Telegram
🐈 GitHub


Community of IT Experts#

👾 Discord


Refill My Coffee Supplies#

💖 PayPal
🏆 Patreon
🥤 BuyMeaCoffee
🍪 Ko-fi
💎 GitHub
Telegram Boost

🌟 Bitcoin (BTC): bc1q2fq0k2lvdythdrj4ep20metjwnjuf7wccpckxc
🔹 Ethereum (ETH): 0x76C936F9366Fad39769CA5285b0Af1d975adacB8
🪙 Binance Coin (BNB): bnb1xnn6gg63lr2dgufngfr0lkq39kz8qltjt2v2g6
💠 Litecoin (LTC): LMGrhx8Jsx73h1pWY9FE8GB46nBytjvz8g


Is this content AI-generated?

No. Every article on this blog is written by me personally, drawing on decades of hands-on IT experience and a genuine passion for technology.

I use AI tools exclusively to help polish grammar and ensure my technical guidance is as clear as possible. However, the core ideas, strategic insights, and step-by-step solutions are entirely my own, born from real-world work.

Because of this human-and-AI partnership, some detection tools might flag this content. You can be confident, though, that the expertise is authentic. My goal is to share road-tested knowledge you can trust.

Enable the Active Directory Recycle Bin in Windows Server 2012 R2
https://www.heyvaldemar.com/enable-the-active-directory-recycle-bin-in-windows-server-2012-r2/
Author
Vladimir Mikhalev
Published at
2015-09-26
License
CC BY-NC-SA 4.0