NDES Security Best Practices

NDES Security Best Practices https://ift.tt/3iRJYYd Hi, I am Dagmar, working for the Microsoft Compromise Recovery Security Practice team. As NDES (Network Device Enrollment Server) – if misconfigured or not secured and hardened properly – can be a door opener for the compromise of an Active Directory, I decided to collect and write down security best practices.    A brief History of SCEP and NDES  The Network Device Enrollment […]

Three Active Directory vulnerabilities were addressed in the October 2021 Updates

Three Active Directory vulnerabilities were addressed in the October 2021 Updates https://ift.tt/3lzouBa When looking at the October 12th, 2021 updates today, I noticed three updates that specifically address vulnerabilities in Active Directory Domain Services and DNS. These vulnerabilities affect domain controllers at the heart of many networking infrastructure environments. About the vulnerabilities Three vulnerabilities were […]

Threat Trends: Firewall

Threat Trends: Firewall https://ift.tt/3G1Zmva These days, protecting the network perimeter is a foregone conclusion. However, there is no longer a monolithic perimeter—there are often multiple perimeters to protect. Unauthorized attempts to cross perimeters are frequent, and the need to defend against threats is critical to protect your assets. In any perimeter defense a key component […]

Step-by-Step Guide: How to Configure Microsoft Local Administrator Password Solution (LAPS)

Step-by-Step Guide: How to Configure Microsoft Local Administrator Password Solution (LAPS) https://ift.tt/3BWW3TC In a business, when setting up new servers or computers, most of the time administrators are using one common password for the local administrator account. This account is usually used as a backdoor by administrators for software installation/uninstallation, to log in when domain […]