Security Focus One Liner: AD Privileged User and Password Doesn’t Expire

I get to perform security assessments against Active Directory. It’s always fascinating. There’s a check that lists privileged users that are configured to not expire their password. Now, a proportion of flagged accounts are Service Accounts, but, there’s sometimes human-associated administrative accounts listed. This poor administrative practice still happens… after all these years of Active Directory, and after all these…

0

PowerShell, FSMOs and Netdom

I like any excuse to try and match the functionality of an executable with PowerShell. This week I decided to take a pop at: netdom query fsmo   This lists the FSMO role holders for the current domain and forest. Now, for some reason, there's not a cmdlet for listing out the FSMOs. In fact, getting…

2

Scripting Tips and Tricks: Param()

Param() – the next instalment in the exciting Scripting Tips and Tricks series! I'm a tidy person: tidy desk, tidy mind, and all that jazz. I believe in being as thorough and proper in my scripts and functions as possible. To that end, I delight in using PowerShell features such as: #Requires… to ensure certain conditions…

1