AD

AD Active Directive CMD

nltest /server:savdaldc02.savilltech.com /dsregdns

S.NOTOPICSVERSIONEXPLAINSOLUTION



Displays calls that have not yet been answeredrepadmin /showoutcalls *



List the Topology informationrepadmin /bridgeheads * /verbose



Inter Site Topology Generator Reportrepadmin /istg * /verbose



Summarize the replication status and view overall healthrepadmin /replsummary



Show replication partner and statusrepadmin /showrepl



Show replication partner for a specific domain controllerrepadmin /showrepl <ServerName>



Show only Replication Errorsrepadmin /showrepl /errorsonly



Show replication QueueRepadmin /Queue




REPADMIN /showobjmeta



displays the replication partners for each NCRepadmin /showrepl /repsto




Repadmin /queue




Repadmin /viewlist *



How to Force Active Directory Replicationrepadmin /syncall dc1 /AeD



Push replication CMDrepadmin /syncall dc1 /APeD




repadmin /bind



replication summaryrepadmin /replsum



FSMO Rolesnetdom query fsmo



List all DC in Forestnetdom query dc, Repadmin /viewlist *




repadmin /showrepl * /csv >showrepl.csv




repadmin.exe /showrepl dc* /verbose /all /intersite




Get-NetworkStatistics | where Localport -eq 8000




Get-NetTCPConnection -LocalPort 443 | Format-List



View Port Use Along with Process Identifiersnetstat -aon



How to verify KCC disableddsquery site -name Default-First-Site-Name | dsget site –autotopology



Command to find the LDAP path for groupDSquery group –samid “Group Name”



Command to find the LDAP path for OUDsquery OU –name “OU Name”



Command to find the LDAP path for user objectDsquery user –name “User Name”



Command to find the LDAP path for subnet objectdsquery subnet -name “Subnet”



Command to find the LDAP path for the Sitedsquery site -name “Site Name”



Command to find duplicate service principal name in active directorycsvde -f C:\Temp\spn.csv -d ” dc=domain,dc=in” -r “(ServicePrincipalName=*computer_name*)” -l “cn”



View Last Reboot Timenet statistics server | more



Remote Desktop into Console of specific computerMstsc /v:computername /console



Command to add members of one group to the other group (Group migration)dsget group “Source group DN” -members | dsmod group “Destination group DN” -addmbr



AD Replication failed with “Target principal name is incorrect” Event ID: 5722netdom resetpwd /server:server_name /userd:domain_nameadministrator /passwordd:administrator_password




repadmin /options DC Name



Sync replication with all of its replication partnersrepadmin /replicate destination_dsa Naming Context /allsources



Sync the Active Directory replication between two DCrepadmin /replicate destination_dsa source_dsa Naming Context /force



Gpresult failed with ERROR Access DeniedRegsvr32 /n /I c:winntsystem32userenv.dll



Command to get the site name of the roaming profile serveNltest /dsgetsite /server “roaming profile serve name”



How to change the subnet mask of DHCP scopeC:>netsh dhcp server \\”Server name” scope “scope subnet” dump>c:dhcp.txt



To check the current secure channel with a particular Domainnltest /sc_query:Domain Name




netsh int ip reset resetlog.txt, netsh winsock reset




dfsutil cache referral, dfsutil /PktInfo, dfsutil /spcflush, dfsutil /pktflush




dfsdiag /testdfsintegrity /dfsroot:\\rakhesh.local\pub /full /recurse,



Viewing the NetBIOS Name Cachenbtstat -c




netdom trust /d:masterdom resourcedom



The /dclist parameter is used to create a list of domain controllers of the domain fourthcoffee.comnltest /dclist:fourthcoffee



you want to find out detailed information about a certain usernltest /user:”TestAdmin”



Verify trust relationship with a specific servernltest.exe /server:fourthcoffee-dc-01 /sc_query:fourthcoffee



Determine the PDC emulator for a domainnltest /dcname:fourthcoffee



Show trust relationships for a domainnltest /domain_trusts




Repadmin /showutdvec DC1 dc=contoso,dc=com



Secure channel may be broken, Reset secure channel or Rejoin domainnltest /sc_reset:



Trust password may be mismatchednltest /sc_change_pwd:<domainname>



To use Repadmin to remove lingering objectsrepadmin /removelingeringobjects ServerName ServerGUID DirectoryPartition /advisory_moderepadmin /removelingeringobjects ServerName ServerGUID DirectoryPartition /advisory_mode



event ID 1945lingering object



Lingering Object Liquidator (LoL)repadmin /failcache



Microsoft Active Directory Topology Diagrammer




qwinsta, fltmc




rundll32.exe keymgr.dll, KRShowKeyMgr




dnscmd /enumdirectorypartitions




dcdiag.exe /TEST:RidManager /v | find /i “Available RID Pool for the Domain”




Managing RID Issuance in Windows Server 2012




http://winintro.ru/wincmdref.en/index.html?page=html%2Ff9b822a1-8b8d-458b-9608-2fac0deddb9e.htm




netstat -tabn, netstat -ban



Remove credentials withRun psexec -i -s -d cmd, cmd /list, cmdkey /delete:target,



ensure that the operations masters are functioning properly and availabledcdiag /s:<DomainControllerName> /test:fsmocheck



ensure that the operations masters can be locateddcdiag /s:<DomainControllerName> /test:knowsofroleholders /v



reset the Domain GPOdcgpofix /target:Domain



reset the Default DC GPOdcgpofix /target:DC



Check the status of the shared SYSVOLdcdiag /test:netlogons



Verify replication with other domain controllersdcdiag /test:replications




repadmin /removelingeringobjects /advisory_mode




repadmin /removelingeringobjects ServerName ServerGUID DirectoryPartition /advisory_mode



To verify the availability of the operations mastersdcdiag /s:<DomainControllerName> /test:knowsofroleholders /v



ensure that the operations masters are functioning properly and available on the networkdcdiag /s:<DomainControllerName> /test:fsmocheck




nslookup -debug pugazh.co.in




nslookup -type=soa pugazh.co.in

Leave a Reply

Your email address will not be published. Required fields are marked *