Skip to content

Latest commit

 

History

History
21 lines (15 loc) · 897 Bytes

15. Active Directory Overview.md

File metadata and controls

21 lines (15 loc) · 897 Bytes

Active Directory Overview

Active Directory Overview

  • phone book to store services for Windows (computers, users, printers). Kerberos tickets.
  • 95% of Fortune 1000 companies uses it.
  • no need to use an exploit, we use features, trusts, components.

Physical Active Directory Components

  • domain controller stores the phone book. Provides auth. Allows admin access to manage users and networks.

Logical Active Directory Components

  • the active directory directory schema. Rulebook.
  • domains: users, computers for one domain.
  • tree: group of domains, with child domains.
  • forest: collection of one or more domain trees.
  • organizational units: containers for users, groups, computers.
  • trusts: directional (trusted to access another domain), transitive (trust is extended to include other trusted domains)
  • objects: user, contacts, groups, computers, printers, shared folders