Active Directory

nltest

SafeDomain/DC diagnostics

nltest /dsgetdc:<domain>

Locate DCs and check secure-channel health.

Examples

  • nltest /sc_query:corp.localCheck secure channel

Syntax

nltest /dsgetdc:<domain> | /sc_query:<domain>

Before you run it

Read-only.

Used when you see

Cannot log in / auth fails
3
Check DC reach/replicationVerify the secure channel
See the whole flow →
Account keeps locking out
4
Trace the source machine via DC logs
See the whole flow →

Related commands

The same reference, with no signal at all

Every command and flow from this site, held on your device and searchable with no connection. Free to install, no ads.

Get it free on the App Store