123ArticleOnline Logo
Welcome to 123ArticleOnline.com!
ALL >> Business >> View Article

The Object Permission Structure In Active Directory

Profile Picture
By Author: Shirley Green
Total Articles: 129
Comment this article
Facebook ShareTwitter ShareGoogle+ ShareTwitter Share

The object permission structure for Active Directory has many similarities with that of the MCSE 2003 exams file system. Objects are arranged in a hierarchical structure, and permission inheritance can be managed to ensure the propagation of permissions throughout a section of the structure or to prevent inheritance by sensitive objects. Like files, folders, and registry keys, Active Directory objects have their own unique permission sets. There are two differences between Active Directory objects and the other objects that can be protected by permissions:
There are many Active Directory object types, and each type has some permissions common with all other object types and its own set of unique permissions.
To the Active Directory, all activity is seen as a matter of access, and all management over this activity is seen as access control. It's as if rights have become permissions. Some permissions available for Active Directory objects can be leveraged to provide granular control over whole categories or divisions of the Active Directory infrastructure.

The permissions ...
... that are available for each object in Active Directory and their default settings are defined in the free Microsoft certification exam questions schema in the Active Directory Schema. It would be impossible to list all of them in this book; indeed, there does not seem to be a publicly available comprehensive list of all possible permissions. Nor is there any guide that might help you determine the exact impact of every possible set of permissions. And there might never be. However, you can investigate and learn about the major permission sets and then use them to gain a security advantage.

You can also plan and undertake management of Active Directory objects by using the permissions that you do understand. You can delegate administration of Active Directory objects by assigning permissions at the container or object level. However, best practices dictate that you should do so at the container level in most cases. For example, for delegation of authority at the object level look at the discussion on securing a Certification Authority in Chapter 2. In that case, you assign administration of a single CA by assigning permissions on that CA object. For an example of delegating authority at the container level, see the following free practice exams for MCTS discussion of managing OUs.

Total Views: 479Word Count: 380See All articles From Author

Add Comment

Business Articles

1. Top Bearing Company Delivering Reliable Performance For Trucks And Industrial Applications
Author: Bee Overseas

2. Choosing The Right Garden Fencing And Driveway Gates For Your Uk Home
Author: Vikram Kumar

3. The Castle Has No Walls: Why Enterprise Security Must Move Beyond The Perimeter
Author: Robert

4. How Koel Colours Is Shaping The Future Of Cosmetic Pigments In 2026
Author: koel

5. Loyalty Platform Guide: Features, Top Providers & How To Choose The Right One
Author: Ravi Kuamr

6. Vashikaran Astrologer In India | Ram Ratan Shastri Ji
Author: Ram Ratan Shastri Ji.

7. Kitchen Cabinets Marble – A Perfect Blend Of Style And Functionality
Author: mike

8. Why Pharma Brands Need Effective Visual Merchandising In Retail Pharmacies | Brandola
Author: Brandola

9. The Automation Standard: Achieving Zero Tolerance With An Automatic Fly Ash Brick Making Machine
Author: Karmyog India

10. Italian Marble Table – A Symbol Of Luxury And Timeless Elegance
Author: mike

11. The Real Impact Of Back Pain Therapy In Worcestershire
Author: Energize Therapy

12. The Benefits That A Digital Business Card Promises
Author: Angus Carruthers

13. What Factors Contribute Towards The Success Of A Virtual Receptionist?
Author: Eliza Garran

14. Lucintel Forecasts The Global Gate Driver Ic Market To Reach $2,905 Million By 2035
Author: Lucintel LLC

15. Lucintel Forecasts The Global Exosome Research Market To Reach $1,125 Million By 2035
Author: Lucintel LLC

Login To Account
Login Email:
Password:
Forgot Password?
New User?
Sign Up Newsletter
Email Address: