Active Directory Real Defense for Domain Admins
Offered By: YouTube
Course Description
Overview
Explore advanced techniques for securing Active Directory environments in this 49-minute conference talk from DerbyCon 4. Learn how to effectively manage Domain Admin accounts, implement strict password policies, and set logon restrictions to enhance overall security. Discover the importance of separating privileged accounts from everyday use, disabling cached credentials, and properly handling service accounts. Gain insights into using Microsoft Security Compliance Manager and understanding the risks associated with null sessions. Emphasize the value of offensive security training to better defend against potential threats. Conclude with a Q&A session to address specific concerns and deepen your understanding of Active Directory defense strategies.
Syllabus
Disclaimer
Test your new DAs
Limit the number of DAS
Separate DA accounts from "everyday" accounts
Separate DA password policy
Set DA logon restrictions DCs only!
Disable Cached Creds
Be careful with DA service accounts
Microsoft Security Compliance Manager
A quick word about null sessions
Get offensive security training!
Questions?
Related Courses
Building Geospatial Apps on Postgres, PostGIS, & Citus at Large ScaleMicrosoft via YouTube Unlocking the Power of ML for Your JavaScript Applications with TensorFlow.js
TensorFlow via YouTube Managing the Reactive World with RxJava - Jake Wharton
ChariotSolutions via YouTube What's New in Grails 2.0
ChariotSolutions via YouTube Performance Analysis of Apache Spark and Presto in Cloud Environments
Databricks via YouTube