Microsoft’s Active Directory Security Feature
Active Directory (AD) security is not a single setting; it is a compilation of settings that is adaptable and can become very complex. The default AD security settings handle the basic control of objects such as user accounts, group accounts, and computer accounts. For small companies, this default configuration might be sufficient. For larger companies, the built-in security will be quickly outgrown quickly and additional security settings and design must be considered and implemented. Regardless of the size of the company, a firm grasp of AD security settings is necessary to ensure a secure and stable IT infrastructure.
The security that you design for AD must be implemented properly to be effective. Failure to do so can leave AD vulnerable to attacks from both within and outside of the LAN. In addition, AD security is very difficult to audit and track if not it is not setup properly. In some cases, it will be easier to start over rather than to attempt to secure the AD environment after it has been installed and configured with many objects, settings, and features.
Hi Ruohan! i think your post did not explain to me what exactly is Active Directory. I think you can look more information online or go to Microsoft Library for more information.
ReplyDelete