Requirement:
Allow user to logon with PIN or Fingerprint via Group Policies
Resolution:
Create GPO
Logon to DC and open Active Directory PowerShell Module as administrator and execute below commands and compress the output folder c:\Ms-log and send by mail:
Cd \
md MS-log
Get-ADDomain | fl Name, DomainMode > C:\ms-log\DFL.txt
Get-ADForest | fl Name, ForestMode > C:\ms-log\FFL.txt
Get-ADDomainController -Filter * | select Name, OperatingSystem, IPv4Address, Site > C:\ms-log\dclist.txt
Netdom query fsmo > C:\ms-log\fsmo.txt
Repadmin /showrepl * /csv > C:\ms-log\showrepl.csv
Gpresult /h C:\ms-log\GPR001.html
auditpol.exe /get /category:* > C:\ms-log\audit.txt
dfsrmig.exe /getglobalstate > c:\MS-Log\dfs.txt
logon to client open CMD as admin and execute below
gpresult /h c:\gpr-client.html
For more information:
No comments:
Post a Comment