如何批量添加用户到AD组?
可以写一个powershell小程序。
# cat Users.csv
UserName
user1
user2
Import-module ActiveDirectory
#获取ou管理员身份认证
$ou_admin_credential= Get-Credential "Domain01\User01"
Import-CSV "C:\Scripts\Users.csv" | % {
$a=$_.UserName.trim(); #必须trim,因为过滤的时候连空格也会一并作为过滤条件进行筛选
$usr=get-aduser -searchbase "OU=用户账号,DC=DEV,DC=COM" -filter {sAMAccountName -eq $a};#按照帐户名查用户信息
Add-ADGroupMember -Identity "CN=cdsw,OU=bigdata,DC=DEV,DC=COM" -Credential $ou_admin_credential -Member $usr
}
添加用户
Import-module ActiveDirectory
$ou_admin_credential= Get-Credential "Domain01\User01"
$securePass= ConvertTo-SecureString -AsPlainText realpassword -force
new-aduser tom -AccountPassword $securePass -Enabled $TRUE -PasswordNeverExpires $FALSE -Path "OU=BIGDATA,DC=pear,DC=com" -Credential $ou_admin_credential
删除用户
Import-module ActiveDirectory
$ou_admin_credential= Get-Credential "Domain01\User01"
remove-aduser tom -Credential $ou_admin_credential