RSAT - from workgroup machine to domain controller


hi!

i've computer windows 7 in workgroup , windows server 2008r2 core domain controller.

1. i've enable remote management via sconfig on dc , configured firewall.

2. i've installed rsat win7.

3. i've added dc list of trusted hosts win7 computer in winrm. 

4. on win7 executed: cmdkey /add:dc1 /user:contoso\administrator /pass:p@ssaword

after that: can via server manager or aduc connect dc. have strange permissions in aduc. can't add users, change upn, or expiration date, can modify description, phone number. can add group, can't add members... can add ou... but, example, can add records in zone in dns manager, configure dns settings, restart dns service...

my question is: it's available have full control in aduc (ad) if client computer not domain member?

hi,

did run rsat domain admin account?  suggest use domain joined pc manage rsat.

in addition, below artcle should helpful you:

using microsoft rsat non-domain pc

https://joscor.com/2013/06/using-microsoft-rsat-from-a-non-domain-pc/

please note: since web site not hosted microsoft, link may change without notice. microsoft not guarantee accuracy of information.

regards,

yan li


cataleya li
technet community support



Windows Server  >  Management



Comments

Popular posts from this blog

server manager error: ADAM.events.xml could not be enumerated.

Cannot access Anywhere Access using domain name?

WMI Failure: Unable to update Local Resource Group