Viewing the Permissions of a Group
Updated: February 28, 2009
Applies To: Windows Server 2008 R2
This topic explains how to use the Active Directory module for Windows PowerShell to view the permissions of a group.
The following example demonstrates how to view the permissions of the group ManagedGroups in the Fabrikam.com domain:
|You must run the following command from the AD:\> drive, and the drive must be connected to the domain where the group exists. For more information about providers, see about providers (http://go.microsoft.com/fwlink/?LinkId=150334).|
Get-ACL (Get-ADGroup ManagedGroups) | fl * -f
In addition to the standard Lightweight Directory Access Protocol (LDAP) attributes, you can retrieve the following extended properties of the Get-ADGroup cmdlet by using the -Properties parameter:
For a full explanation of the parameters that you can pass to Get-ADGroup or Get-ACL, at the Active Directory module command prompt, type Get-Help Get-ADGroup –detailed or Get-Help Get-ACL –detailed, and then press ENTER.