中国DOS联盟论坛

中国DOS联盟

-- 联合DOS 推动DOS 发展DOS --
联盟域名:www.cn-dos.net 论坛域名:www.cn-dos.net/forum
游客 | 登录 | 注册 | 会员 | 搜索 | 中国DOS联盟
中国DOS联盟论坛
现在时间是 2026-08-10 06:56
47,811 主题排行 / 349,897 发帖 / 今日 2 篇 / 48,255 会员排行
DOS批处理 & 脚本技术(批处理室) » [已结]用管理员权限同步服务器时间
可打印版本  1,201 / 5
第1楼 wxs81514 发表于 2008-05-14 14:36
初级用户 发帖 52 积分 118
[已结]用管理员权限同步服务器时间
网络环境:工作站win2000PRO,服务器win2000SER,工作组管理模式
由于我们公司规定不可以自由设置共享,所以我把我们公司所有用户降为了user用户,这样虽然限制了共享,但同时也限制了同步服务器时间以及更改注册表等权限。请各位大虾指点一下,可不可以让工作站在同步服务器时间时暂时用管理员的权限去操作,怎么用批处理实现。

[ Last edited by HAT on 2008-11-3 at 20:58 ]
第2楼 HAT 发表于 2008-05-16 11:38
版主 发帖 5,017 积分 9,023
Runas恐怕不行,PsTools中的PsExec能满足要求吗?
PsExec
Utilities like Telnet and remote control programs like Symantec's PC Anywhere let you execute programs on remote systems, but they can be a pain to set up and require that you install client software on the remote systems that you wish to access. PsExec is a light-weight telnet-replacement that lets you execute processes on other systems, complete with full interactivity for console applications, without having to manually install client software. PsExec's most powerful uses include launching interactive command-prompts on remote systems and remote-enabling tools like IpConfig that otherwise do not have the ability to show information about remote systems.

Installation

Copy PsExec onto your executable path. Typing "psexec" displays its usage syntax.

Usage

usage: | @file]]] cmd




computer
Direct PsExec to run the application on the computer or computers specified. If you omit the computer name PsExec runs the application on the local system and if you enter a computer name of \\* then PsExec executes the commands on all computers in the current domain.


@file
PsExec will execute the command on each of the computers listed in the file.


-u
Specifies optional user name for login to remote computer.


-p
Specifies optional password for user name. If you omit this you will be prompted to enter a hidden password.


-s
Run remote process in the System account.


-e
Loads the specified account's profile.


-i
Run the program so that it interacts with the desktop on the remote system.


-c
Copy the specified program to the remote system for execution. If you omit this option then the application must be in the system's path on the remote system.


-n
Specifies timeout in seconds connecting to remote computers.


-f
Force the copy of the specified program if it already exists on the remote system.


-v
Copy the specified file only if it has a higher version number or is newer on than the one on the remote system.


-d
Don't wait for application to terminate. Only use this option for non-interactive applications.


-w
Set the working directory of the process (relative to the remote computer).


-x
Display the UI on the Winlogon desktop.


-priority
Specifies -low, -belownormal, -abovenormal, -high or -realtime to run the process at a different priority.


-a
Separate processors on which the application can run with commas where 1 is the lowest numbered CPU. For example, to run the application on CPU 2 and CPU 4, enter: "-a 2,4"


arguments
Arguments to pass (note that file paths must be absolute paths on the target system)




You can enclose applications that have spaces in their name with quotation marks e.g. "psexec \\marklap "c:\long name\app.exe". Put arguments directed at the application outside of the parenthesis. Input is only passed to the remote system when you press the enter key, and typing Ctrl-C terminates the remote process.

If you omit a username the remote process runs in the same account from which you execute PsExec, but because the remote process is impersonating it will not have access to network resources on the remote system. When you specify a username the remote process executes in the account specified, and will have access to any network resources the account has access to. Note that the password is transmitted in clear text to the remote system.

Examples

The following command launches an interactive command prompt on \\marklap:

psexec \\marklap cmd



This command executes IpConfig on the remote system with the /all switch, and displays the resulting output locally:

psexec \\marklap ipconfig /all



This command copies the program test.exe to the remote system and executes it interactively:

psexec \\marklap -c test.exe



Specify the full path to a program that is already installed on a remote system if its not on the system's path:

psexec \\marklap c:\bin\test.exe
第3楼 wxs81514 发表于 2008-05-17 22:41
初级用户 发帖 52 积分 118
这个没接触过,研究一下.
第4楼 zts59 发表于 2008-11-03 20:51
中级用户 发帖 104 积分 387
PSEXEC肯定可以的,不过PSEXEC带的参数是明文的(密码)。
此优点可以远程执行

另一个方法:
把 修改本机的日期时间 的权限给USER

[ Last edited by zts59 on 2008-11-3 at 20:52 ]
第5楼 yishanju 发表于 2008-11-03 20:55
银牌会员 发帖 1,357 积分 1,488
可以设置USER用户有修改时间的权限吧
第6楼 everest79 发表于 2008-11-03 20:59
金牌会员 发帖 1,127 积分 2,564
在本地安全策略中可以指定可以修改时间的用户或组
[ 联系联盟系统管理团队 - 中国DOS联盟 - 标准版 ]
Sponsored by ifanr Inc | © 2001–2023