Solved

Get-ADGroupMember PowerShell

Posted on 2014-04-01
2
2,420 Views
Last Modified: 2014-04-01
I'm trying to get a list of users in a Domain Local security group.

For all of my other groups, that are either Global or Universal, I'm able to achieve this using the

Get-ADGroupMember command.

This does not seem to work with a domain local security group, and instead returns the following response:


Get-ADGroupMember : The operation completed successfully
At line:1 char:18
+ Get-ADGroupMember <<<<  "DomainLocal Group Name"
    + CategoryInfo          : NotSpecified: (DomainLocal Group Name:ADGroup) [Get-ADGroupMember], ADException
    + FullyQualifiedErrorId : The operation completed successfully,Microsoft.ActiveDirectory.Management.Commands.GetAD
   GroupMember

Open in new window


How can I get the list of users in my domain local security group?
0
Comment
Question by:fireguy1125
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 29

Expert Comment

by:becraig
ID: 39970589
Get-ADGroupMember -Identity (Name of your group)
0
 
LVL 7

Accepted Solution

by:
Delete earned 500 total points
ID: 39970619
My assumption is that you have a Foreign Security Principle in the Domain Local group that you are trying to query.  

If that is the case then try using Quest Active Roles Management for Active Directory which you can download here: http://www.quest.com/powershell/activeroles-server.aspx

Once you have those do the below command:

Get-QADGroupMember "GroupName" | Select Name
0

Featured Post

Instantly Create Instructional Tutorials

Contextual Guidance at the moment of need helps your employees adopt to new software or processes instantly. Boost knowledge retention and employee engagement step-by-step with one easy solution.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The following article is intended as a guide to using PowerShell as a more versatile and reliable form of application detection in SCCM.
This article explains the steps required to use the default Photos screensaver to display branding/corporate images
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

733 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question