Posts

Showing posts from February, 2009

Active Directory Command Line One-Liners

Domain Controllers Nltest /dclist:%userdnsdomain% Domain Controller IP Configuration for /f %i in (’dsquery server -domain %userdnsdomain% -o rdn’) do psexec \\%i ipconfig /all Stale computer accounts dsquery computer domainroot -stalepwd 180 -limit 0 Stale user accounts dsquery user domainroot -stalepwd 180 -limit 0 Disabled user accounts dsquery user domainroot -disabled -limit 0 AD Database disk usage for /f %i in (’dsquery server -domain %userdnsdomain% -o rdn’) do dir \\%i\admin$\ntds Global Catalog Servers from DNS dnscmd %logonserver% /enumrecords %userdnsdomain% _tcp | find /i "3268" Global Catalog Servers from AD dsquery * "CN=Configuration,DC=forestRootDomain" -filter "(&(objectCategory=nTDSDSA)(options:1.2.840.113556.1.4.803:=1))" Users with no logon script dsquery * domainroot -filter"(&(objectCategory=Person)(objectClass=Us...