Wednesday, 6 April 2011

List all Users and Groups in Domain


   There are many tools and utilities designed to do so, but none are native W2K GUI. There are no graphical or command line utilities that produce comprehensive reports on groups, users and permissions included with the Windows Operating System or the Resource Kit. The NET commands and the Windows Resource Kit ADDUSERS.EXE and PERMS.EXE utilities can be used to create limited administrative reports by piping the output to a text file.
Limited report generation is possible through the following commands:
Note: Removal of the /domain switch will generate a report for the local machine.



NET USERS /DOMAIN >USERS.TXT   


This command will return the user accounts from the Primary Domain Controller (PDC) of the current domain, and write them to a file called USER.TXT




NET ACCOUNTS /DOMAIN >ACCOUNTS.TXT 


This command will return the account policy information from the PDC of the current domain, and write it to a file called ACCOUNTS.TXT


NET CONFIG SERVER >SERVER.TXT 


This command will return the server name, version of Windows, active network adapter information/MAC address, Server hidden status, Maximum Logged On Users, Maximum open files per session, Idle session time, and assign it to a file called SERVER.TXT


NET CONFIG WORKSTATION >WKST.TXT 


This command will return the workstation name, user name, version of Windows, network adapter, network adapter information/MAC address, Logon domain, COM Open Timeout, COM Send Count, COM Send Timout, and write it to a file called WKST.TXT.


NET GROUP /DOMAIN >DGRP.TXT 


This command will return the global groups on the PDC of the current domain, and write them to a file called GRP.TXT.


NET LOCALGROUP >LGRP.TXT 


This command will return the local groups on the local machine, and write them to a file call LGRP.TXT.


NET VIEW /DOMAIN:DOMAINNAME >VIEW.TXT 


This command will return the resources in the specified domain, and write them to a file called VIEW.TXT.

No comments:

Post a Comment