Se ($RoleDatacenterFfoEnvironment - eq "True") { $ospUserName = "OspUser"; Conjunto de usuário $ospUserName - RemotePowerShellEnabled $True - CertificateSubject $RoleDatacenterOspCertSubjects - DomainController $RoleDomainController;# Definir a nova função de gerenciamento $centralAdminManagementRole = ManagementRole de get - DomainController $RoleDomainController - RoleType CentralAdminManagement |? { $_.IsRootRole};$ospUserUnscopedRoleName = "OspUser UnscopedRole"; $ospUserUnscopedRole = $RoleDomainController de ManagementRole de get - DomainController |? {$_.Nome - ieq $ospUserUnscopedRoleName}; Se (-não $ospUserUnscopedRole) { $ospUserUnscopedRole = New-ManagementRole-$ospUserUnscopedRoleName de nome-pai $centralAdminManagementRole - DomainController $RoleDomainController; } }
Se ($RoleDatacenterEnableFullLanguageMode - eq "True") { .$RoleBinPath\CentralAdminSetup.ps1; RemoveLocalComputerAccountFromCentralAdminServersGroup ...
Se ($RoleDatacenterFfoEnvironment - eq "True") { # Criar EOPChangeUser $eopChangeUserName = "EOPChangeUser"; $eopChangeUser ...
Se ($RoleDatacenterFfoEnvironment - eq "True") { # Criar OspUser $ospUserName = "OspUser"; $ospUser = $RoleDomainController ...
Se ($RoleDatacenterFfoEnvironment - eq "True") { $eopChangeUserName = "EOPChangeUser"; Conjunto ThrottlingPolicyAssociation-Identity ...
Se ($RoleDatacenterFfoEnvironment - eq "True") { $ospUserName = "OspUser"; Conjunto de usuário $ospUserName - RemotePowerShellEnabled ...
Se ($RoleDatacenterFfoEnvironment - eq "True") { $ospUserName = "OspUser"; Conjunto ThrottlingPolicyAssociation-Identity ...
Se ($RoleDatacenterFfoEnvironment - eq "True") { Instalação-CannedRbacRoleAssignments - InvocationMode $RoleInstallationMode ...
Se ($RoleDatacenterFfoEnvironment - eq "True") { Instalação-CannedRbacRoles - InvocationMode $RoleInstallationMode - DomainController ...
Se ($RoleDatacenterIsManagementForest - eq "True") { $userName = "OspAzureUser"; $OspElevationScriptsRoleName = "OspElevation"; ...