Slide 7
Slide 7 text
08 & 11 August 18
Sense of Security - 2018
Parameters
• -Protocol
• Which protocol to use; ADWS (default) or LDAP
• -DomainController
• Domain Controller IP Address or Domain FQDN.
• -Credential
• Domain Credentials.
• -GenExcel
• Path for ADRecon output folder containing the CSV files to
generate the ADRecon-Report.xlsx. Use it to generate the
ADRecon-Report.xlsx when Microsoft Excel is not installed
on the host used to run ADRecon.
• -OutputDir
• Path for ADRecon output folder to save the
CSV/XML/JSON/HTML files and the ADRecon-Report.xlsx.
(The folder specified will be created if it doesn't exist)
(Default pwd)
• -Collect
• Which modules to run (Comma separated; e.g
Forest,Domain. Default all)
• Valid values include: Forest, Domain, Trusts, Sites,
Subnets, PasswordPolicy, FineGrainedPasswordPolicy,
DomainControllers, Users, UserSPNs, Groups,
GroupMembers, OUs, ACLs, GPOs, GPOReport, DNSZones,
Printers, Computers, ComputerSPNs, LAPS, BitLocker.
• -OutputType
• Output Type; Comma seperated; e.g CSV,STDOUT,Excel
(Default STDOUT with -Collect parameter, else CSV and
Excel).
• Valid values include: STDOUT, CSV, XML, JSON, HTML,
Excel, All (excludes STDOUT).
• -DormantTimeSpan
• Timespan for Dormant accounts. (Default 90 days)
• -PassMaxAge
• Maximum machine account password age. (Default 30
days)
• - ResolveSIDs
• Whether to resolve SIDs in the ACLs module. (Default
False)
• -PageSize
• The PageSize to set for the LDAP searcher object. (Default
200)
• -Threads
• The number of threads to use during processing objects
(Default 10)
• -Log
• Create ADRecon Log using Start-Transcript