April 14, 2015 at 7:46 am

I have a task i'm trying to complete that will:

1) Check against a hard coded folder path list for their security
2) If a user is part of that security group that isnt in an approved Group it needs to be reported (exclusions for Administrators, Domain admins, etc..)

This script will be ran locally on each of the servers, with domain credentials.

Is there a way with powershell to determine what Groups a User is part of on the domain, without being on the domain controller?

April 14, 2015 at 11:11 am

I found this with a little searching. I have not tested it or anything but it appears to do what you require.

Take a look and see what you think and test outside of production.