How it works...
When a device is joined to Active Directory, it receives an RID through its corresponding computer object. The device has several permissions in Active Directory, including read permissions in the Active Directory System Volume (SYSVOL).
By attaching a previously-created computer object, all the information for the device is already available to the device when communicating to the domain controllers. From the outset, this scenario looks as though it only has advantages.
One piece of information that is needed to attach to the computer object is the secret for the object. As the process needs to work for other operating systems too, the secret is straightforward; it is the NetBIOS name of the computer in all caps, followed ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access