AD³£ÓÃÃüÁî

·¢²¼Ê±¼ä : ÐÇÆÚËÄ ÎÄÕÂAD³£ÓÃÃüÁî¸üÐÂÍê±Ï¿ªÊ¼ÔĶÁ

Êý¾Ý£¬¿ÉʹÓÃADSI£¬LDPµÈ¹¤¾ß¡£ ×¢Ò⣺ÇëÉ÷ÖزÙ×÷£¡

* ²»Í¬Ó²¼þÏ»¹Ô­£ºÍ¨³£Çé¿ö£¬²»½¨ÒéÄ㽫ADµÄ±¸·Ý»¹Ô­µ½²»Í¬µÄÓ²¼þÉÏ£¬³ý·ÇÄãÈ·ÈÏлúÆ÷ºÍÔ­»úÆ÷µÄÓ²¼þ»ù±¾Ò»Ö±£¬²¢Ê¹ÓÃͬÑùµÄÓ²¼þ³éÏó²ãÎļþ£¨HAL£©¡£

* Ô¶³Ì±¸·ÝºÍ»¹Ô­£ºÔÚBOOT.INIÎļþºó£¬¿ÉÒÔ¼ÓÉÏ/safeboot:dsrepairÃüÁîÑ¡ÏÒýµ¼Ô¶³Ì»úÆ÷½øÈë»Ö¸´Ä£Ê½¡£

½áÓï

±¾Îļòµ¥µÄÃèÊöÁ˻Ŀ¼µÄÕûÌå¸ÅÄîºÍ»ù±¾ÀíÂÛ£¬²¢Öصã²ûÊöÁËADµÄ±¸·ÝºÍ»Ö¸´¼¼ÇɺͲÙ×÷£¬ÒÔ¼°ÔÖÄÑÐԵĻָ´ÊֶΡ£

¸½Â¼£ºNTDSUTILµÄ°ïÖú ntdsutil: ?

? - ´òÓ¡Õâ¸ö°ïÖúÐÅÏ¢

Authoritative restore - ȨÍþÐԵĻָ´ DIT Êý¾Ý¿â Domain management - ×¼±¸ÐÂÓò´´½¨ Files - ¹ÜÀí NTDS Êý¾Ý¿âÎļþ Help - ´òÓ¡Õâ¸ö°ïÖúÐÅÏ¢

IPDeny List - ¹ÜÀí LDAP IP ·ñÈÏÁбí LDAP policies - ¹ÜÀí LDAP ЭÒé²ßÂÔ

Metadata cleanup - ÇåÀí²»Ê¹ÓõķþÎñÆ÷µÄ¶ÔÏó Popups %s - Óá°on¡±»ò¡°off¡±ÆôÓûò½ûÓõ¯³ö Quit - Í˳öʵÓóÌÐò

Roles - ¹ÜÀí NTDS ½ÇÉ«ËùÓÐÕßÁîÅÆ

Security account management - ¹ÜÀí°²È«ÕÊ»§Êý¾Ý¿â - ¸´ÖÆ SID ÇåÀí

Semantic database analysis - Óï·¨¼ì²éÆ÷

dcdiag£ºÓÃÓÚ²âÊÔÓò¿ØÖÆÆ÷״̬µÄ·ÖÎö¹¤¾ß

ÀýÈçdcdiag /v£¨¼ì²â»î¶¯Ä¿Â¼µÄ״̬£¬²¢ÇÒ´òÓ¡³öÏêϸµÄ·ÖÎö±¨¸æ£©

dcdiag /test:dns£¨ÓÃÓÚ²âÊÔDNSµÄ״̬£©

adprep£ºÓÃÓÚ¸üÐÂÏÖÓÐAD¼Ü¹¹ÓëÊôÐÔÀ©Õ¹¹¤¾ß 2000ÓòÉý¼¶µ½2003 adprep /forestprep adprep /domainprep

nslookup£ºÓÃÓÚ²éѯÓòÃûϵͳµÄÃüÁîÐй¤¾ß nslookup -d www.microsoft.com

´òÓ¡³ö½âÎömicrosoftÓòÃûµØÖ·µÄÈ«¹ý³Ì£¬¼°DNS¼Ç¼ÉúÃüÖÜÆÚ¡£

replmon£ºÍ¼ÐνçÃæµÄAD¸´Öƹ¤¾ß ÔËÐУ¬ÊäÈërepmlon

GPResult£º²é¿´×é²ßÂÔ½á¹û¹¤¾ß

C:\\Documents and Settings\\Administrator>GPResult

Microsoft (R) Windows (R) ²Ù×÷ϵͳ×é²ßÂÔ½á¹û¹¤¾ß v2.0 °æȨËùÓÐ (C) Microsoft Corp¡£1981-2001 ´´½¨ÓÚ 2007-12-1£¬18:09:28

JASON\\admin µÄ RSOP Êý¾Ý£¬Î»ÓÚ JASON ÉÏ: µÇ¼ģʽ --------------------------------------------------

OS ÀàÐÍ: Microsoft(R) Windows(R) Server 2003, Enterpris

OS ÅäÖÃ: ¶ÀÁ¢·þÎñÆ÷ OS °æ±¾: 5.2.3790 Öն˷þÎñÆ÷ģʽ: Ô¶³Ì¹ÜÀí Õ¾µãÃû³Æ: ÔÝȱ ÂþÓÎÅäÖÃÎļþ:

±¾µØÅäÖÃÎļþ: C:\\Documents and Settings\\Administrator ʹÓÃÂýËÙÁ´½Ó?: ·ñ

¼ÆËã»úÉèÖà -----------

ÉÏÒ»´ÎÓ¦ÓÃ×é²ßÂÔµÄʱ¼ä: ÓÚ 2007-12-1£¬17:49:31 Ó¦ÓõÄ×é²ßÂÔÀ´Ô´ÓÚ: ÔÝȱ ×é²ßÂÔÂýËÙÁ´½Ó·§Öµ: 500 kbps ÓòÃû:

ÓòÀàÐÍ: WindowsNT 4

ÒÑÓ¦ÓõÄ×é²ßÂÔ¶ÔÏó

-------------------

Local Group Policy

´Ë¼ÆËã»úÊÇÏÂÁа²È«×éµÄÒ»²¿·Ö ---------------------------- BUILTIN\\Administrators Everyone

NT AUTHORITY\\Authenticated Users

Óû§ÉèÖà ---------

ÉÏÒ»´ÎÓ¦ÓÃ×é²ßÂÔµÄʱ¼ä: ÓÚ 2007-12-1£¬17:39:35 Ó¦ÓõÄ×é²ßÂÔÀ´Ô´ÓÚ: ÔÝȱ ×é²ßÂÔÂýËÙÁ´½Ó·§Öµ: 500 kbps ÓòÃû: JASON

ÓòÀàÐÍ: <±¾µØ¼ÆËã»ú>

ÒÑÓ¦ÓõÄ×é²ßÂÔ¶ÔÏó ------------------- ÔÝȱ

ÏÂÁÐ×é²ßÂÔ¶ÔÏó±»É¸Ñ¡Åųý£¬Òò´ËûÓÐÓ¦Óà --------------------------------------- Local Group Policy

ÕýÔÚɸѡ: ûÓÐÓ¦Óà (¿Õ)

Óû§ÊÇÏÂÁа²È«×éµÄÒ»²¿·Ö ------------------------ None Everyone

BUILTIN\\Administrators BUILTIN\\Users

NT AUTHORITY\\INTERACTIVE NT AUTHORITY\\Authenticated Users This Organization LOCAL

NTLM Authentication

set logon server£º²é¿´µ±Ç°Óû§µÇ¼µÄÄÇ̨·þÎñÆ÷¡£Èç¹ûÓû§ÊÇÓòÓû§£¬½«ÏÔʾ³öÓû§ËùµÇ¼µ½µÄÓò¿ØÖÆÆ÷¡£

ÁªÏµºÏͬ·¶ÎÄ¿Í·þ£ºxxxxx#qq.com(#Ì滻Ϊ@)