sententia
Home    Blog

ActiveDirectory Command Line queries

Who is logged in
C:\>whoami
returns:
mydomain\myloginid

Where is this user in DS
C:\>dsquery user -samid myloginid
returns:
"CN=myloginid,OU=myOU,OU=Service,OU=Accounts,DC=mydomain,DC=com"

What groups the user belongs to:
C:\>dsquery user -samid myloginid  |  dsget user -memberof
returns:
"CN=Shared Support WEB Dev Local Server Service Accounts,OU=Dev,OU=WEB,OU=Shared Support,OU=myOU,DC=mydomain,DC=com"
"CN=CGG TrainingOnline RW,OU=CGG,OU=Legacy-CEG,OU=File Share,OU=Groups,DC=mydomain,DC=com"
"CN=Domain Users,CN=Users,DC=mydomain,DC=com"
"CN=xxx Domain Users,OU=myOU,OU=Migrated Groups,DC=mydomain,DC=com"

To run as a different user:
C:\>runas /user:otheruser@mydomain.com cmd.exe
Enter the password for otheruser@mydomain.com:
Attempting to start cmd.exe as user "otheruser@mydomain.com" ...