Sample server XML configuration file for installing with pre-created groups


Updated: May 11, 2018

Applies To: Dynamics 365 (on-premises), Dynamics CRM 2016

By default, Setup creates four Active Directory security groups that are used by Microsoft Dynamics 365. You can create these groups in advance and then provide the information for the groups in the Setup configuration file.

To use the pre-created Active Directory directory service security groups, create an XML configuration file that uses the LDAP distinguished name syntax that is similar to the following example. Modify the variables as appropriate.

For example, the following sample would be used when the Organizational unit (OU) where the pre-created groups (PrivUserGroup, SQLAccessGroup, ReportingGroup, and PrivReportingGroup) are located is named CRM and the full domain name where the OU is located is


The user who runs Microsoft Dynamics CRM Server Setup must have Full Control permission to the organizational unit (OU) where the Active Directory groups are located. For more information about delegating control ofActive Directory OUs, see Delegating administration of resource OUs.

Because the organizational unit will be specified when you use the Active Directory groups <GROUPS> element, you cannot specify the organizational unit again using the <OU> element.

The <Groups> element must be inside the <Server> and <CRMSetup> elements. For syntax structure, see Microsoft Dynamics CRM Server XML configuration file.

<Groups AutoGroupManagementOff="false">
    <PrivReportingGroup>CN=PrivReportingGroup,OU= CRM,DC=sales,DC=contoso,DC=com</PrivReportingGroup>

© 2017 Microsoft. All rights reserved. Copyright1