-
Notifications
You must be signed in to change notification settings - Fork 206
/
Copy pathSet-MsOUserBlockStatus.ps1
77 lines (66 loc) · 2.83 KB
/
Set-MsOUserBlockStatus.ps1
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
#Requires -Version 5.0
#Requires -Modules MSOnline
<#
.SYNOPSIS
Connect to MS Online and sets user can log on Azure Active Directory
.DESCRIPTION
.NOTES
This PowerShell script was developed and optimized for ScriptRunner. The use of the scripts requires ScriptRunner.
The customer or user is authorized to copy the script from the repository and use them in ScriptRunner.
The terms of use for ScriptRunner do not apply to this script. In particular, ScriptRunner Software GmbH assumes no liability for the function,
the use and the consequences of the use of this freely available script.
PowerShell is a product of Microsoft Corporation. ScriptRunner is a product of ScriptRunner Software GmbH.
© ScriptRunner Software GmbH
.COMPONENT
Azure Active Directory Powershell Module
.LINK
https://github.com/scriptrunner/ActionPacks/tree/master/O365/MSOnline/Users
.Parameter UserObjectId
[sr-en] Unique ID of the user from which to get properties
.Parameter UserName
[sr-en] Display name, Sign-In Name or user principal name of the user from which to get properties
.Parameter Enabled
[sr-en] User is able to log on using their user ID
.Parameter TenantId
[sr-en] Unique ID of the tenant on which to perform the operation
#>
param(
[Parameter(Mandatory = $true,ParameterSetName = "User object id")]
[guid]$UserObjectId,
[Parameter(Mandatory = $true,ParameterSetName = "User name")]
[string]$UserName,
[Parameter(ParameterSetName = "User name")]
[Parameter(ParameterSetName = "User object id")]
[switch]$Enabled,
[Parameter(ParameterSetName = "User name")]
[Parameter(ParameterSetName = "User object id")]
[guid]$TenantId
)
try{
if($PSCmdlet.ParameterSetName -eq "User object id"){
$Script:Usr = Get-MsolUser -ObjectId $UserObjectId -TenantId $TenantId | Select-Object ObjectID,DisplayName
}
else{
$Script:Usr = Get-MsolUser -TenantId $TenantId | `
Where-Object {($_.DisplayName -eq $UserName) -or ($_.SignInName -eq $UserName) -or ($_.UserPrincipalName -eq $UserName)} | `
Select-Object ObjectID,DisplayName
}
if($null -ne $Script:Usr){
$null = Set-MsolUser -ObjectId $Script:Usr.ObjectId -BlockCredential (-not $Enabled) -TenantId $TenantId
if($SRXEnv) {
$SRXEnv.ResultMessage = "User $($Script:Usr.DisplayName) lock on state set to $($Enabled.toString())"
}
else{
Write-Output "User $($Script:Usr.DisplayName) lock on state set to $($Enabled.toString())"
}
}
else{
if($SRXEnv) {
$SRXEnv.ResultMessage = "User not found"
}
Throw "User not found"
}
}
catch{
throw
}