> Add-ADGroupMember -Identity "Group" -Members "User" > Remove-ADGroupMember -Identity "Group" -Members "User" -Confirm:$false dn: cn=TempGroup,ou=PAMLAB,dc=pamlab,dc=metabpa,dc=org objectClass: group objectClass: dynamicObject entryTTL: 86400 SAMAccountName: TempGroup > ldifde.exe -i -f > Enable-ADOptionalFeature "Privileged Access Management Feature" -Scope ForestOrConfigurationSet -Target Add-ADGroupMember -Identity -Members User -MemberTimeToLive (New-TimeSpan -Seconds 3600) > Add-ADGroupMember -Identity -Members User -MemberTimeToLive (New-TimeSpan -End "31.12.2017 23:59:59") > Get-ADGroup -ShowMemberTimeToLive -Property Member | select Member -ExpandProperty Member