YoVDO

Active Directory Real Defense for Domain Admins

Offered By: YouTube

Tags

Conference Talks Courses Security Compliance Courses Active Directory Security Courses

Course Description

Overview

Explore advanced techniques for securing Active Directory environments in this 49-minute conference talk from DerbyCon 4. Learn how to effectively manage Domain Admin accounts, implement strict password policies, and set logon restrictions to enhance overall security. Discover the importance of separating privileged accounts from everyday use, disabling cached credentials, and properly handling service accounts. Gain insights into using Microsoft Security Compliance Manager and understanding the risks associated with null sessions. Emphasize the value of offensive security training to better defend against potential threats. Conclude with a Q&A session to address specific concerns and deepen your understanding of Active Directory defense strategies.

Syllabus

Disclaimer
Test your new DAs
Limit the number of DAS
Separate DA accounts from "everyday" accounts
Separate DA password policy
Set DA logon restrictions DCs only!
Disable Cached Creds
Be careful with DA service accounts
Microsoft Security Compliance Manager
A quick word about null sessions
Get offensive security training!
Questions?


Related Courses

Active Directory Security Beyond the Easy Button
YouTube
Securing Active Directory PAM for ADDS
YouTube
Abusing Microsoft Kerberos - Sorry You Guys Don't Get It
Black Hat via YouTube
Active Directory Attacks Series
YouTube
An ACE Up the Sleeve - Designing Active Directory DACL Backdoors
Black Hat via YouTube