Adsecurity.org

Securing Domain Controllers to Improve Active Directory Security

When an Active Directory domain is first created, there are two GPOs created by default: 1. Default Domain Policy – GUID: {31B2F340-016D … See more

Actived: Just Now

URL: https://adsecurity.org/?p=3377

Active Directory Security – Active Directory & Enterprise Security

WEBFor most of 2019, I was digging into Office 365 and Azure AD and looking at features as part of the development of the new Trimarc Microsoft Cloud Security Assessment which …

Category:  Health Go Health

What is Azure Active Directory

WEBAzure Active Directory (Azure AD or AAD) is a multi-tenant cloud directory and authentication service. Azure AD is the directory service that Office 365 (and Azure) …

Category:  Health Go Health

Kerberos & KRBTGT: Active Directory’s Domain Kerberos Service …

WEBThe KRBTGT account is a local default account that acts as a service account for the Key Distribution Center (KDC) service. This account cannot be deleted, and the account …

Category:  Health Go Health

PowerShell Code: Get & Set Active Directory Tombstone Lifetime …

WEBActive Directory is a multi-master database replicated among multiple Domain Controllers. In order to ensure that objects are fully replicated before deletions are processed …

Category:  Health Go Health

Microsoft LAPS Security & Active Directory LAPS Configuration …

WEBOver the years, there have been several methods attempted for managing local Administrator accounts: Scripted password change - Don't do this. The password is …

Category:  Health Go Health

There’s Something About Service Accounts – Active Directory …

WEBThere’s Something About Service Accounts. By Sean Metcalf in Technical Reference. Service accounts are that gray area between regular user accounts and admin accounts …

Category:  Health Go Health

Building an Effective Active Directory Lab Environment for Testing

WEBThe key is to outfit the lab computer with as much RAM as possible. My recommendation is 16GB at a minimum, 32GB preferred, with more than that even better! Processor: Does …

Category:  Health Go Health

Active Directory Security – Active Directory & Enterprise Security

WEBIn May 2020, I presented some Active Directory security topics in a Trimarc Webcast called “Securing Active Directory: Resolving Common Issues” and included some information I …

Category:  Health Go Health

PowerShell Code: Check KRBTGT Domain Kerberos Account Last …

WEBFrom my GitHub Repo: Get-PSADForestKRBTGTInfo This function discovers all of the KRBTGT accounts in the forest using ADSI and returns the account info, specifically the …

Category:  Health Go Health

Some Favorite DerbyCon 6 Talks (2016) – Active Directory Security

WEBBy Sean Metcalf in Security Conference Presentation/Video. This post is a collection of my favorite and interesting talks from DerbyCon 6 (2016). There were a lot of great talks …

Category:  Health Go Health

Active Directory Replication Overview & USN Rollback: What It Is …

WEBIf you have experienced event id #2095, then you understand how a USN Rollback can negatively affect AD consistency. What is a USN? The USN (Update Sequence …

Category:  Health Go Health

Microsoft Key Management Server (KMS) Details

WEBThe Microsoft Key Management Server (KMS) is part of the Microsoft Volume Activation 2.0 solution managing Windows OS activation keys and performs activation for supported …

Category:  Health Go Health

Windows Server 2016 Technical Preview 2 Now Available for …

WEBActive Directory Federation Services (AD FS) in Windows Server Technical Preview includes new features that enable you to configure AD FS to authenticate users stored in …

Category:  Health Go Health

You Moved to Office 365 Now What

WEBLogging Security Features & Controls ADFS Misc Protocol Control. Moving to the Microsoft Cloud. •Sign up for Office 365 –first one in gets Global Admin! •Configure Azure AD …

Category:  Health Go Health

Cloudy Vision: How Cloud Integration Complicates Security

WEBCloud Security Challenges. Challenges. •Security controls: On-prem vs cloud. •Cloud environment is constantly changing. •Rapid changes often mean learning curve is …

Category:  Health Go Health

Machine Account (AD Computer Object) Password Updates

WEBResetting (changing) a computer account password: With Windows 2000 or Windows XP, you can also reset the machine account from within the graphical user interface (GUI). In …

Category:  Health Go Health

New & Updated Features in Windows Server 2012 R2

WEBUpdated. Enhancements include automatic rebalancing of Scale-Out File Server clients, improved performance of SMB Direct, and improved SMB event messages. See What’s …

Category:  Health Go Health