管理不同的網域 Active Directory 管理中心Manage Different Domains in Active Directory Administrative Center

適用於:Windows Server(以每年次管道)、Windows Server 2016Applies To: Windows Server (Semi-Annual Channel), Windows Server 2016

當您打開主動式?Directory 管理,您目前登入在此電腦的網域 \ (本機 domain) 會顯示在使用中的?Directory 管理中心瀏覽窗格 (the left pane)。When you open Active??Directory Administrative, the domain that you are currently logged on to on this computer (the local domain) appears in the Active??Directory Administrative Center navigation pane (the left pane). 根據您目前的一組登入認證的權限,您可以檢視或管理主動?在此區域的網域 directory 物件。Depending on the rights of your current set of logon credentials, you can view or manage the Active??Directory objects in this local domain.

您也可以使用的登入認證,相同的作用中的執行個體。檢視或管理主動 directory 管理中心?Directory 或中的物件相同森林中中的任何其他網域與當地的網域建立的信任的其他森林中的網域。You can also use the same set of logon credentials and the same instance of Active??Directory Administrative Center to view or manage Active??Directory objects in any other domain in the same forest, or a domain in another forest that has an established trust with the local domain. 支援的方式 one\ 信任和 two\ 向信任。Both one-way trusts and two-way trusts are supported.

注意

如果之間網域 one\ 向信任?和網域?透過哪一個使用者網域中 B?A 可以存取網域中的資源。B 但網域中的使用者。B 無法存取網域中的資源。答:,如果您正在執行主動式?在電腦上的 directory 管理中央位置網域?是您當地的網域中,您可以連接到網域?目前的設定的登入認證,並在相同的作用中的執行個體與 B。Directory 管理中心。If there is a one-way trust between Domain??A and Domain??B through which users in Domain??A can access resources in Domain??B but users in Domain??B cannot access resources in Domain??A, if you are running Active??Directory Administrative Center on the computer where Domain??A is your local domain, you can connect to Domain??B with the current set of logon credentials and in the same instance of Active??Directory Administrative Center. 但是,如果您正在執行主動?在電腦上的 directory 管理中央位置網域。B 是您當地的網域中,您無法連接到網域?使用的相同的作用中的執行個體的認證 A?Directory 管理中心。But if you are running Active??Directory Administrative Center on the computer where Domain??B is your local domain, you cannot connect to Domain??A with the same set of credentials in the same instance of the Active??Directory Administrative Center.

還有不基本群組成員,才能完成此程序。There is no minimum group membership required to complete this procedure.

Windows Server 2012︰ 管理外部網域中選取作用中的執行個體。使用目前的登入認證集 directory 管理中心Windows Server 2012: To manage a foreign domain in the selected instance of Active??Directory Administrative Center using the current set of logon credentials

  1. 若要打開主動式?目錄管理置中,請在伺服器管理員,按一下 [工具,然後按一下 [作用中?Directory 管理中心To open Active??Directory Administrative Center, in Server Manager, click Tools, and then click Active??Directory Administrative Center.

    注意

    打開作用中的另一種方式。Directory 管理中心是按一下開始,然後輸入dsac.exeAnother way to open Active??Directory Administrative Center is to click Start, and then type dsac.exe.

  2. 打開到新增瀏覽節點,按一下 [管理,然後按一下 [新增瀏覽節點如下所示。To open Add Navigation Nodes, click Manage, then click Add Navigation Nodes as shown in the following illustration.

    螢幕擷取畫面顯示 * * 新增瀏覽節點 * * UI

  3. 在 [新增瀏覽節點,按一下 [連接到其他網域如下所示。In Add Navigation Nodes, click Connect to other domains as shown in the following illustration.

    螢幕擷取畫面顯示 * * 新增瀏覽節點 * * UI

  4. 在 [連接到,輸入您想要管理外部網域名稱 \ (,例如contoso.com),然後按一下 [確定In Connect to, type the name of the foreign domain that you want to manage (for example, contoso.com), and then click OK.

  5. 當您已成功連接到外部網域中時,瀏覽的欄中新增瀏覽節點視窗中,選取容器或新增到您的使用中的容器?Directory 管理中心瀏覽窗格中,然後再按一下確定When you are successfully connected to the foreign domain, browse through the columns in the Add Navigation Nodes window, select the container or containers to add to your Active??Directory Administrative Center navigation pane, and then click OK.

Windows Server 2008 R2: To manage a foreign domain in the selected instance of Active??Directory Administrative Center using the current set of logon credentialsWindows Server 2008 R2: To manage a foreign domain in the selected instance of Active??Directory Administrative Center using the current set of logon credentials

  1. 若要打開主動式?Directory 管理中心] 中,按一下 [開始,按一下 [系統管理工具,,然後按一下 [作用中。Directory 管理中心To open Active??Directory Administrative Center, click Start, click Administrative Tools, and then click Active??Directory Administrative Center.

    注意

    打開作用中的另一種方式。Directory 管理中心是按一下開始,按一下 [執行,然後輸入dsac.exeAnother way to open Active??Directory Administrative Center is to click Start, click Run, and then type dsac.exe.

  2. 打開到新增瀏覽節點,附近的使用中的最上方。Directory 管理中心] 視窗中,按一下 [新增瀏覽節點如下所示。To open Add Navigation Nodes, near the top of the Active??Directory Administrative Center window, click Add Navigation Nodes as shown in the following illustration.

    螢幕擷取畫面顯示 * * 新增瀏覽節點 * * UI

    注意

    打開另一種方式新增瀏覽節點right\ 按作用中的空白區域中的任何位置點一下就是?Directory 管理中心瀏覽窗格中,然後再按一下新增瀏覽節點Another way to open Add Navigation Nodes is to right-click anywhere in the empty space in the Active??Directory Administrative Center navigation pane, and then click Add Navigation Nodes.

  3. 在 [新增瀏覽節點,按一下 [連接到其他網域如下所示。In Add Navigation Nodes, click Connect to other domains as shown in the following illustration.

    螢幕擷取畫面顯示 * * 新增瀏覽節點 * * * * 連接到其他網域 * * UI

  4. 在 [連接到,輸入您想要管理外部網域名稱 \ (,例如contoso.com),然後按一下 [確定In Connect to, type the name of the foreign domain that you want to manage (for example, contoso.com), and then click OK.

  5. 當您已成功連接到外部網域中時,瀏覽的欄中新增瀏覽節點視窗中,選取容器或新增到您的使用中的容器?Directory 管理中心瀏覽窗格中,然後再按一下確定When you are successfully connected to the foreign domain, browse through the columns in the Add Navigation Nodes window, select the container or containers to add to your Active??Directory Administrative Center navigation pane, and then click OK.

    如需有關如何使用中的自訂的詳細資訊?Directory 管理中心瀏覽窗格中,查看自訂 Active Directory 管理中心瀏覽窗格For more information about customizing the Active??Directory Administrative Center navigation pane, see Customize the Active Directory Administrative Center Navigation Pane.

    您也可以打開主動式?使用一組登入認證,目前登入認證的設定不同的 directory 管理中心。You can also open Active??Directory Administrative Center by using a set of logon credentials that is different from your current set of logon credentials. 以下程序命令有幫助,如果您正在使用中的電腦登入?Directory 管理中心使用一般的使用者認證,但您想要使用主動式?Directory 管理中心」在此電腦上以管理您當地的網域以系統管理員身分。The command in the following procedure can be useful if you are logged on to the computer that is running Active??Directory Administrative Center with normal user credentials, but you want to use Active??Directory Administrative Center on this computer to manage your local domain as an administrator. \(這個命令還可以用如果您想要使用主動式?遠端管理有所不同一組目前登入認證的設定不同的認證您當地的網域外部網域 directory 管理中心。(This command can also be useful if you want to use Active??Directory Administrative Center to remotely manage a foreign domain that is different from your local domain with a set of credentials that is different from your current set of logon credentials. 不過,外部網域必須建立的信任與當地的網域。)However, the foreign domain must have an established trust with the local domain.)

    還有不基本群組成員,才能完成此程序。There is no minimum group membership required to complete this procedure.

若要管理使用不同的目前的登入認證集登入認證網域中To manage a domain using logon credentials that are different from the current set of logon credentials

  1. 若要打開作用。Directory 管理置中的命令提示字元中,輸入下列命令,,然後按 ENTER 鍵︰To open Active??Directory Administrative Center, at a command prompt, type the following command, and then press ENTER:

    runas /user:<domain\user> dsac

    何處<domain\user>是您想要打開作用中的認證的設定。使用 directory 管理中心和dsac作用中。Directory 管理中心可執行檔名稱 (Dsac.exe)。Where <domain\user> is the set of credentials that you want to open Active??Directory Administrative Center with and dsac is the Active??Directory Administrative Center executable file name (Dsac.exe).

    例如,輸入下列命令,並按一下 ENTER:For example, type the following command, and then press ENTER:

    runas /user:contoso\administrator dsac

  2. 使用時?Directory 管理中心 's open、瀏覽以檢視或管理您的使用中瀏覽窗格?Directory 網域。When Active??Directory Administrative Center is open, browse through the navigation pane to view or manage your Active??Directory domain.