1、修改主机名
先关闭防火墙
2、添加主控域
3、辅助域控安装
服务安装见主域控步骤,辅助域控需要能解析主域的域名
4、用户管理
添加OU
dsadd ou "ou=it,dc=chinaskills,dc=com"
dsadd ou "ou=sales,dc=chinaskills,dc=com"
dsadd ou "ou=finance,dc=chinaskills,dc=com"
dsadd ou "ou=management,dc=chinaskills,dc=com"
添加group组
dsadd group "cn=sales,ou=sales,dc=chinaskills,dc=com"
dsadd group "cn=it,ou=it,dc=chinaskills,dc=com"
dsadd group "cn=finance,ou=finance,dc=chinaskills,dc=com"
dsadd group "cn=management,ou=management,dc=chinaskills,dc=com"
批量创建sale 1-9
打开cmd不能用powershell
for /l %a in (1,1,9)do dsadd user "cn=sales00%a,ou=sales,dc=chinaskills,dc=com" -samid sales00%a -display sales00%a -memberof "cn=sales,ou=sales,dc=chinaskills,dc=com" -pwdneverexpires yes -pwd Chinaskill20.
批量创建sale10-99
for /l %a in (10,1,99)do dsadd user "cn=sales0%a,ou=sales,dc=chinaskills,dc=com" -samid sales0%a -display sales0%a -memberof "cn=sales,ou=sales,dc=chinaskills,dc=com" -pwdneverexpires yes -pwd Chinaskill20.
创建it1-5
for /l %a in (1,1,5)do dsadd user "cn=it0%a,ou=it,dc=chinaskills,dc=com" -samid it0%a -display it0%a -memberof "cn=it,ou=it,dc=chinaskills,dc=com" -pwdneverexpires yes -pwd Chinaskill20.
创建management用户
for /l %a in (1,1,9)do dsadd user "cn=f0%a,ou=management,dc=chinaskills,dc=com" -samid f0%a -display f0%a -memberof "cn=management,ou=management,dc=chinaskills,dc=com" -pwdneverexpires yes -pwd Chinaskill20.
UPN用户设置
添加csk组
powershell
New-ADOrganizationalUnit csk
cmd
for /l %a in (1,1,9) do dsadd user “cn=it0%a,ou=csk,dc=chinaskills,dc=cn” –pwd Chinaskills.cn–memberof “cn=IT,ou=csk,dc=chinaskills,dc=cn” –upn it0%a@csk.cn