Backup group membership information
In the AD domain, the user rights are basically saved in the AD domain group, and the user department sometimes has this demand. After a user has left for a long time, the user department may not supplement this post until half a year or a year later. When the IT department sets up an account for the new employee, we need to find the relevant group of the departing employee, so we need to back up the relevant group information at any time, and it is very convenient to read the group information. Export memberof related information every day and save it to csv file
Import-Module ActiveDirectory
$groupPath = "D:\ Scripts\ ADGroupStatus\ User\ Users_" + (get-date) .ToString ('yyyyMMdd') + ".csv"
$Users = Get-ADUser-Filter Properties
$str = "user,samAccountname,memberOf"
$str | Out-File-Encoding utf8-Append $groupPath
Foreach ($User in $Users)
{
$str = $User.name+ "," + $User.samAccountname + ","
Foreach ($memberOf in $User.memberof)
{
$str + $MemberOf.substring (3 memberOf.IndexOf (",")-3) | | Out-File-Encoding utf8-Append $groupPath |
}
}