In domain the adminstrator/ admin group/enterprise admin has rights to create user.
local user account
A user account. Without a user account object defined in the active directory a user cannot log on and gain access to network resources.
Domain Users.
the user account is stored in the active directory
The Active Directory Schema defines the types of user,printer objects to be created in the domain
dsrmObjectDN to remove user accountdsrm computerComputerDN to remove computer account
Domain Controller
If a user receives a message stating that their account has expired while trying to log on to an Active Directory domain, it typically means that their account settings need to be updated by an administrator. The user should contact their IT support or system administrator to request an account renewal or reactivation. The administrator can then access the Active Directory Users and Computers tool to modify the account's properties and extend its expiration date.
Information is stored in Schema of Active Directory.
Active directory users are nothing but the ones those are authenticated or able to access the directory with all the benefits of directory
Deleted user account has been restored through system sate backup. But it can be restored in DRSM mode i.e directory restored mode .
No a user defined in active directory cannot access a shared drive if they are not part of the domain. You will need to set them up as a user on your computer.