Microsoft's on-premises directory service managing users, computers, and resources in Windows networks.
Active Directory (AD) is Microsoft's on-premises directory service, managing user accounts, computer accounts, groups, and policies in Windows environments. AD provides authentication, authorisation, and centralised management through Group Policy. While cloud identity (Entra ID) is increasingly central, most organisations maintain hybrid environments with AD synchronised to the cloud. AD security is critical—it's the primary target for attackers seeking domain dominance.
Why It Matters
The DSC Perspective:
Active Directory controls access to your on-premises resources. AD compromise often means complete network compromise. Securing AD—tiered administration, privileged access workstations, monitoring—is essential.
