Solved

how do i identify users of a domain security group and members of any nexted groups?

Posted on 2013-06-14
6
389 Views
Last Modified: 2013-06-20
how do i identify users of a domain security group and members of any nexted groups in server 2003?

Thanks
0
Comment
Question by:Jason Thomas
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
6 Comments
 
LVL 5

Expert Comment

by:MisterTwelve
ID: 39247157
0
 
LVL 1

Author Comment

by:Jason Thomas
ID: 39247159
Thanks, anyone know if there are any windows command line tools that i can use other than VB scripts
0
 
LVL 5

Assisted Solution

by:vin_shooter
vin_shooter earned 250 total points
ID: 39247230
Hi,

Check the below commands,

 1. How to find all members for a particular group
 
  dsget group "<DN of the group>" -members

1a. How to find all groups for a particular member (including nested groups)
 
  dsget user "<DN of the user>" -memberof -expand
  dsquery user -samid "username" | dsget user -memberof -expand
 

Can go through the below link for few more commands..,

http://social.technet.microsoft.com/wiki/contents/articles/2195.active-directory-dsquery-commands.aspx
0
Industry Leaders: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

 
LVL 1

Author Comment

by:Jason Thomas
ID: 39247253
Many thanks for that helps me a lot. If i run teh first command it does give me teh mebers but it also list other groups. Is there a command that will show me the mebers of the DN and members of any nexted groups that you know of?
0
 
LVL 5

Accepted Solution

by:
MisterTwelve earned 250 total points
ID: 39247255
dsquery user -samid USER | dsget user -Memberof -expand | dsget Group -samid

Replace USER for your user you need
0
 
LVL 1

Author Closing Comment

by:Jason Thomas
ID: 39261755
Thanks guys. Sorry for the late feedback.
0

Featured Post

Office 365 Training for Admins - 7 Day Trial

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Exchange, OWA, PROXY 7 66
Force Updates from WSUS 5 55
Run powershell against OU 7 79
GPO question 3 32
Last week, our Skyport webinar on “How to secure your Active Directory” (https://www.experts-exchange.com/videos/5810/Webinar-Is-Your-Active-Directory-as-Secure-as-You-Think.html?cid=Gene_Skyport) provided 218 attendees with a step-by-step guide for…
Did you know that more than 4 billion data records have been recorded as lost or stolen since 2013? It was a staggering number brought to our attention during last week’s ManageEngine webinar, where attendees received a comprehensive look at the ma…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…

751 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question