Secure the Forest

Let's begin by examining how to automate security aspects of AD in order to secure the forest. At the core of AD security is the AD permission model, which is designed to provide secure access for all AD containers and objects. We'll focus on illustrating some of the cmdlets that automate AD security management at the cmdlet level. Keep in mind that to automate large-scale tasks, you can easily combine these cmdlets into PowerShell scripts like those that have been shown throughout the book.

Automate Directory Permissions

In AD, default security permissions are assigned to the administrator of the domain or forest—in other words, the domain administrator or the enterprise administrator. Every container and object in AD has an ...

Get Automating Active Directory® Administration with Windows PowerShell® 2.0 now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.