Académique Documents
Professionnel Documents
Culture Documents
w w t . w c e n h c o r o . p o c . n i
Module Overview
Create and Administer User Accounts Configure User Object Attributes
w w t . w c e n h c o r o . p o c . n i
Automate User Account Creation Create and Configure Managed Service Accounts
User Account
A user account:
nables authentication of a user with attributes! including a user logon name and "assword #s a securit$ "rinci"al with a securit$ identifier %S#&' that can be assigned "ermissions to resources
w w t . w c e n h c o r o . p o c . n i
#n the local SAM database of a member com"uter! where it enables logon to the local com"uter and can be assigned "ermissions to local resources
)ocal user accounts are administered with the )ocal Users and *rou"s sna"(in
w w t . w c e n h c o r o . p o c . n i
#et-$e"p New-ADUser detai"ed: Use to get full e."lanations of the "arameters that can be used+
Name Attributes
User logon name %"re(Windows /000': sAMAccountName
Uni1ue in domain /0(character limit
%echnocorp&A'it.(omte
w w t . w c e n h c o r o . p o c . n i
A'it (omte
(omte* A'it
Account Attributes
)ogon 7ours )og On ,o User must change "assword at ne.t logon User cannot change "assword Password never e."ires Account is disabled Store "assword b$ using reversible encr$"tion Smart Card is re1uired for interactive logon Account is trusted for delegation Account e."ires
w w t . w c e n h c o r o . p o c . n i
5esetting a user "assword Unloc8ing a user account &isabling or enabling a user account Moving a user account &eleting a user account
Modif$ Attributes of Multi"le Users Modif$ User Attributes b$ Using Windows PowerShell &emonstration: Create Users with ,em"lates Create Users with ,em"lates
w w t . w c e n h c o r o . p o c . n i
w w t . w c e n h c o r o . p o c . n i
Parameter: Name of attribute value. 9alue for attribute %or use = for all attributes'
Set(A&User modifies s"ecified attributes
Set-ADUser UserDN [-parameter value] UserDN : distinguishedName of the user Parameter value. Attribute and value to be modified
7ow to create a tem"late user account 7ow to co"$ a tem"late user account
w w t . w c e n h c o r o . p o c . n i
Account ta!. )ogon hours! logon wor8stations! account o"tions! and account e."iration Pro+i"e ta!. Profile "ath! logon scri"t! home drive! and home folder "ath ,rgani-ation ta!+ &e"artment! com"an$! and manager Mem!er ,+ ta!. *rou" membershi" and "rimar$ grou"
CS9& +e.e
w w t . w c e n h c o r o . p o c . n i
csvde -f filename -d RootDN -p SearchScope -r Filter -l ListOfAttributes /ootDN. Start of e."ort %default B domain' SearchScope. Sco"e of e."ort %-ase!One)evel!Subtree' 0i"ter. 4ilter within the sco"e %)&AP 1uer$ language' (ist,+Attri!utes. Use the )&AP name
Export
w w t . w c e n h c o r o . p o c . n i
Cannot im"ort "asswords! so users are created as disabled Cannot modif$ e.isting users
Export
w w t . w c e n h c o r o . p o c . n i
Cannot im"ort "asswords! so users are created as disabled Can modif$ or remove e.isting users
Export
w w t . w c e n h c o r o . p o c . n i
Export