This is a quick and dirty script to check the health of a given DC. This will likely seen lots of revisions and chages as it developes
- Virtual Check
- Replication status
- DCDIAG
- Forest and domain functional Level lookup
- Port test to all DC's on all sites (Port 135)
- Users not logged in within the last 90 day lookup
- Unlinked GPO lookup and list
- RID exhaustion check
- Duplicate SPN lookup
- Time source lookup
- Added DNS Scavenging check
- Lists DNS Forwarders and warns if less then 2
Paswords never expirePassword not reqUsers totalUsers disabled
Stale computer accountsTotal Computers / Servers