local-group_group_principalsource
group PrincipalSource
- (
is|is not) one or more of the following keywords:Local,Active Directory,Microsoft Entra group, orMicrosoft Accountin a comma-separated list
Purpose
Warns when the specified group's principal source (the source of the object) does not match the specified sources.
Example configuration
[local-group:*] # Warns when local groups are principal source local. group PrincipalSource is Active Directory, Microsoft Account
Example output
Line 6: There are 21 local groups that are not principal source Active Directory or Microsoft account:| Local group name | Local group Principal Source |
|---|---|
| Access Control Assistance Operators | Local |
| Administrators | Local |
| Backup Operators | Local |
| Cryptographic Operators | Local |
| Device Owners | Local |
| Distributed COM Users | Local |
| Event Log Readers | Local |
| Guests | Local |
| Hyper-V Administrators | Local |
| IIS_IUSRS | Local |
| Network Configuration Operators | Local |
| OpenSSH Users | Local |
| Performance Log Users | Local |
| Performance Monitor Users | Local |
| Power Users | Local |
| Remote Desktop Users | Local |
| Remote Management Users | Local |
| Replicator | Local |
| System Managed Accounts Group | Local |
| User Mode Hardware Operators | Local |
| Users | Local |
local-group_group_principalsource.txt ยท Last modified: by 127.0.0.1
