๐Ÿ“š Learning Objectives

By the end of this module, you will be able to:

๐Ÿ“‹ Module Prerequisites

Required Knowledge

  • Basic understanding of Windows operating system
  • Familiarity with networking concepts (TCP/IP, DNS)
  • Basic knowledge of authentication protocols
  • Understanding of client-server architecture

๐ŸŽฏ Module Lessons

1

Active Directory Architecture

Understanding the core components and structure of Active Directory

90 min Theory + Practice

Key Topics:

  • Domain Controller Roles and Functions
  • Forest, Domain, and Organizational Units
  • Global Catalog and Schema
  • Trust Relationships
  • Active Directory Database (NTDS.dit)
2

LDAP Protocol Deep Dive

Master LDAP operations, queries, and security implications

75 min Theory + Practice

Key Topics:

  • LDAP Protocol Fundamentals
  • Distinguished Names (DN) and Attributes
  • LDAP Operations (Search, Bind, Modify)
  • LDAP Injection Attacks
  • Anonymous LDAP Access
3

Kerberos Authentication

Understanding Kerberos protocol, tickets, and authentication flow

90 min Theory + Practice

Key Topics:

  • Kerberos Protocol Overview
  • Authentication Flow (AS-REQ, TGS-REQ)
  • Ticket Granting Service (TGS)
  • Service Principal Names (SPN)
  • Kerberos Security Considerations
4

Basic Enumeration Techniques

Learn fundamental Active Directory enumeration methods and tools

75 min Practice

Key Topics:

  • Domain Information Gathering
  • User and Computer Enumeration
  • Group Membership Analysis
  • Service and SPN Enumeration
  • Trust Relationship Discovery

๐Ÿงช Hands-On Labs

Lab 1: Active Directory Environment Setup

Objective: Set up a complete Active Directory lab environment for security testing

Duration: 120 minutes Intermediate
  • Install and configure Domain Controller
  • Create organizational units and users
  • Set up service accounts and SPNs
  • Configure trust relationships
  • Install and configure client machines
Start Lab

Lab 2: Basic AD Enumeration

Objective: Practice fundamental Active Directory enumeration techniques

Duration: 90 minutes Intermediate
  • Enumerate domain information using PowerView
  • Perform LDAP queries for user and computer data
  • Analyze group memberships and privileges
  • Discover service principal names (SPNs)
  • Document enumeration results
Start Lab

๐Ÿ“Š Module Assessment

Final Module Assessment

Test your understanding of Active Directory Fundamentals with our comprehensive assessment.

25 Questions 45 minutes 75% to pass

Topics Covered:

  • Active Directory Architecture
  • LDAP Protocol Fundamentals
  • Kerberos Authentication
  • Basic Enumeration Techniques

๐Ÿ”— Related Resources

Tools & Libraries

Research & Learning

Lab Environments

๐Ÿš€ Next Steps

Complete Module 1

Finish all lessons, labs, and assessments

Take Final Assessment

Move to Module 2

Advanced Active Directory enumeration techniques

Start Module 2

Explore Related Paths

Windows Security and Red Team Operations

Windows Security Modules

๐Ÿ“ง Stay Updated with New Content

Get notified when we add new lessons, labs, and expert content!