Configuration driven Active Directory management.
Validates the targeted domain’s Access Rule configuration.
Test-DMAccessRule [[-Server] <ComputerParameter>] [[-Credential] <PSCredential>] [<CommonParameters>]
Validates the targeted domain’s Access Rule configuration. This is done by comparing each relevant object’s non-inherited permissions with the Schema-given default permissions for its object type. Then the remaining explicit permissions that are not part of the schema default are compared with the configured desired state.
The desired state can be defined using Register-DMAccessRule. Basically, two kinds of rules are supported:
This command will test all objects that …
Test-DMAccessRule -Server fabrikam.com
Tests, whether the fabrikam.com domain conforms to the configured, desired state.
The server / domain to work with.
Type: ComputerParameter
Parameter Sets: (All)
Aliases:
Required: False
Position: 1
Default value: None
Accept pipeline input: False
Accept wildcard characters: False
The credentials to use for this operation.
Type: PSCredential
Parameter Sets: (All)
Aliases:
Required: False
Position: 2
Default value: None
Accept pipeline input: False
Accept wildcard characters: False
This cmdlet supports the common parameters: -Debug, -ErrorAction, -ErrorVariable, -InformationAction, -InformationVariable, -OutVariable, -OutBuffer, -PipelineVariable, -Verbose, -WarningAction, and -WarningVariable. For more information, see about_CommonParameters.