Skip to main content

vserver cifs group-policy restricted-group show-applied

Show the applied restricted-group settings.

Availability: This command is available to cluster and Vserver administrators at the admin privilege level.

Description

The vserver cifs group-policy restricted-group show-applied command displays settings of all the restricted groups applied to a Vserver.

If you do not specify any parameters, the command displays the following information about all the restricted groups applied to all the Vservers in the cluster.
  • Group Policy Name: Specifies the name of the group policy.
  • Version: Specifies the version of the group policy.
  • Link: Specifies the level in which the group policy is configured. Possible values are:
    • Local: Group policy is configured in Data ONTAP.
    • Site: Group policy is configured at the site level in the Domain Controller.
    • Domain: Group policy is configured at the domain level in the Domain Controller.
    • OrganizationalUnit: Group policy is configured at the OU level in the Domain controller.
    • RSOP: Resultant set of policies derived from all the group policies defined at various levels.
  • Group Name: Specifies the name of a restricted group.
  • Members: Specifies users and groups who belong to and who do not belong to the restricted group.
  • MemberOf: Specifies list of groups to which the restricted group is added. A group can be a member of groups other than the groups listed here.

Parameters

{ [-fields <fieldname>, ...]
If you specify the -fields <fieldname>, ... parameter, the command output also includes the specified field or fields. You can use '-fields ?' to display the fields to specify.
| [-instance ]}
If you specify the -instance parameter, the command displays detailed information about all fields.
[-vserver <vserver name>] - Vserver
If this parameter is specified, the command displays the restricted-group information that has been applied to the specified Vserver.
[-index <integer>] - Index
If this parameter is specified, the command displays the specified index for the group policy in the restricted group. The restricted-group information for the group policy at the specified index.
[-group-name <text>] - Group Name
If this parameter is specified, the command displays the restricted-group information for the specified group name.
[-group-policy-name <text>] - Group Policy Name
If this parameter is specified, the command displays the restricted-group information for the specified group policy name.
[-uuid <UUID>] - UUID
If this parameter is specified, the command displays the restricted-group information for the specified UUID of the group policy.
[-version <integer>] - Version
If this parameter is specified, the command displays the restricted-group information for the specified version of the group policy.
[-link {Local|Site|Domain|OrganizationalUnit|RSOP}] - Link Type
If this parameter is specified, the command displays the restricted-group information for the specified link for the group policy.
[-members <gpoUserGroup>, ...] - Members, List of Users/groups
If this parameter is specified, the command displays the restricted-group information for the specified members of users and groups.
[-member-of <gpoUserGroup>, ...] - MemberOf, List of Groups
If this parameter is specified, the command displays the restricted-group information for the specified member of the group.

Examples

The following example displays information about all restricted groups that have been applied to a Vserver.

cluster1::> vserver cifs group-policy restricted-group show-applied

Vserver: vs_1
-------------

Group Policy Name: gpo1
Version: 16
Link: OrganizationalUnit
Group Name: grp1
Members: usr1
MemberOf: GPO\g9

Group Policy Name: Resultant Set of Policy
Version: 0
Link: RSOP
Group Name: grp1
Members: usr1
MemberOf: GPO\g9