gpresult | new in WS2003 |
Displays the Resultant Set of Policy (RSoP) settings for a target user on a specified computer.
gpresult [/s Computer [/u Domain \ User /p Password ]] [/user TargetUserName ] [/scope {user computer}] [{/v /z}]
Displays RSoP settings for currently logged-on user
Name or IP address of a remote computer (if omitted, defaults to local computer) and credentials for running the script (if omitted, defaults to SYSTEM built-in identity)
User whose RSOP data is displayed
Displays user or computer portion of Group Policy settings (if omitted, defaults to both)
Verbose output
Even more verbose output
While logged on as Administrator, display both user and computer Group Policy settings for self:
gpresult Microsoft (R) Windows (R) Operating System Group Policy Result tool v2.0 Copyright (C) Microsoft Corp. 1981-2001 Created On 3/26/2003 at 3:26:20 PM RSOP data for MTIT\Administrator on ESRV210D : Logging Mode ------------------------------------------------------------ OS Type: Microsoft(R) Windows(R) Server 2003, Enterprise Edition OS Configuration: Primary Domain Controller OS Version: 5.2.3763 Terminal Server Mode: Remote Administration Site Name: Default-First-Site Roaming Profile: Local Profile: C:\Documents and Settings\Administrator Connected over a slow link?: No COMPUTER SETTINGS ------------------ CN=ESRV210D,OU=Sales,DC=mtit,DC=local Last time Group Policy was applied: 3/26/2003 at 3:22:32 PM Group Policy was applied from: esrv210d.mtit.local Group Policy slow link threshold: 500 kbps Domain Name: MTIT Domain Type: W2K Applied Group Policy Objects ----------------------------- Default Domain Policy The following GPOs were not applied because they were filtered out ------------------------------------------------------------------- Local Group Policy Filtering: Not Applied (Empty) The computer is a part of the following security groups ------------------------------------------------------- BUILTIN\Administrators Everyone RAS and IAS Servers BUILTIN\Pre-W2K Compatible Access BUILTIN\Users Windows Authorization Access Group NT AUTHORITY\NETWORK NT AUTHORITY\Authenticated Users This Organization ESRV210D$ Domain Controllers NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS RAS and IAS Servers USER SETTINGS -------------- CN=Administrator,CN=Users,DC=mtit,DC=local Last time Group Policy was applied: 3/26/2003 at 2:57:06 PM Group Policy was applied from: esrv210d.mtit.local Group Policy slow link threshold: 500 kbps Domain Name: MTIT Domain Type: W2K Applied Group Policy Objects ----------------------------- Default Domain Policy The following GPOs were not applied because they were filtered out ------------------------------------------------------------------- Local Group Policy Filtering: Not Applied (Empty) The user is a part of the following security groups --------------------------------------------------- Domain Users Everyone BUILTIN\Administrators BUILTIN\Users BUILTIN\Pre-W2K Compatible Access REMOTE INTERACTIVE LOGON NT AUTHORITY\INTERACTIVE NT AUTHORITY\Authenticated Users This Organization LOCAL Domain Admins Enterprise Admins Schema Admins Group Policy Creator Owners
Display verbose RSoP user settings for user fsmith@mtit.local on remote member server having IP address 172.16.11.230:
gpresult /s 172.16.11.230 /user mtit\fsmith /scope user /v Microsoft (R) Windows (R) Operating System Group Policy Result tool v2.0 Copyright (C) Microsoft Corp. 1981-2001 Created On 3/26/2003 at 3:39:18 PM RSOP data for MTIT\fsmith on ESRV230D : Logging Mode ----------------------------------------------------- OS Type: Microsoft(R) Windows(R) Server 2003, Enterprise Edi tion OS Configuration: Member Server OS Version: 5.2.3763 Terminal Server Mode: Remote Administration Site Name: Default-First-Site Roaming Profile: Local Profile: C:\Documents and Settings\fsmith Connected over a slow link?: No USER SETTINGS -------------- CN=Frank Smith,OU=Sales,DC=mtit,DC=local Last time Group Policy was applied: 3/26/2003 at 3:30:41 PM Group Policy was applied from: N/A Group Policy slow link threshold: 500 kbps Domain Name: MTIT Domain Type: W2K Applied Group Policy Objects ----------------------------- Default Domain Policy The following GPOs were not applied because they were filtered out ------------------------------------------------------------------- Local Group Policy Filtering: Not Applied (Empty) The user is a part of the following security groups --------------------------------------------------- Domain Users Everyone BUILTIN\Users NT AUTHORITY\INTERACTIVE NT AUTHORITY\Authenticated Users This Organization LOCAL The user has the following security privileges ---------------------------------------------- Bypass traverse checking Resultant Set Of Policies for User ----------------------------------- Software Installations ---------------------- N/A Logon Scripts ------------- N/A Logoff Scripts -------------- N/A Public Key Policies ------------------- N/A Administrative Templates ------------------------ N/A Folder Redirection ------------------ N/A Internet Explorer Browser User Interface ---------------------------------------- N/A Internet Explorer Connection ---------------------------- N/A Internet Explorer URLs ---------------------- N/A Internet Explorer Security -------------------------- N/A Internet Explorer Programs -------------------------- N/A
gpupdate , Group Policy