Active Directory - Real Defense for Domain Admins
Offered By: YouTube
Course Description
Overview
Learn effective strategies to protect Domain Admins and Domain Controllers in Active Directory environments through this conference talk. Explore immediately applicable techniques including testing Domain Admins, limiting their number, implementing separate accounts and password policies, setting logon restrictions, disabling cached credentials, and managing service accounts. Gain insights into using Microsoft Security Compliance Manager, understanding null sessions, and the importance of offensive security training to enhance your organization's defense against potential threats.
Syllabus
Intro
Active Directory: Real Defense for Domain Admins
Disclaimer
Provide immediately useful content for the defense of your Domain Admins (DAS) and Domain Controllers (DCs)
Test your Domain Admins
Limit the number of DAs
EPIC FAIL
Separate DA accounts from "everyday" accounts
Separate DA password policy
Set DA logon restrictions DCs only!
Disable Cached Creds
Be careful with DA service accounts
Microsoft Security Compliance Manager
A quick word about null sessions
Get offensive security training!
Questions?
Related Courses
Computer SecurityStanford University via Coursera Cryptography II
Stanford University via Coursera Malicious Software and its Underground Economy: Two Sides to Every Story
University of London International Programmes via Coursera Building an Information Risk Management Toolkit
University of Washington via Coursera Introduction to Cybersecurity
National Cybersecurity Institute at Excelsior College via Canvas Network