September 2012
Intermediate to advanced
1680 pages
88h 3m
English
The next step is to configure the domain controllers to include DAC information in the Kerberos authentication tickets that are granted to users for data access and authorization. The basis for DAC is Kerberos authentication and authorization, and DAC will not function if organizations’ Active Directory infrastructures rely on third-party Kerberos realm trusts or NTLM as the primary authentication and authorization systems. To enable DAC functionality for Kerberos, known as Kerberos armoring, on the organization’s domain controllers, all domain controllers will require this change.
This change will be applied to all domain controllers by creating a new GPO and linking it to the domain controllers ...
Read now
Unlock full access