Netwrix produces a number of free system security tools and the inactive user tracker is a handy utility for tidying up active directory.
Active directory security tools.
This is the most comprehensive list of active directory security tips and best practices you will find.
Microsoft active directory is one of the most widely used services by network administrators for most administrators microsoft active directory is one of the most important services at their disposal.
You could use the active directory administrative security groups membership checker tool to ensure that only authorized users are part of the security groups in a given active directory domain.
And apply them broadly through active directory or individually through local policy.
Active directory is such an established tool that there is no shortage of tools that integrate to provide a better ad management experience.
Auditing an active directory environment using the native tools is next to impossible.
These insights can be used to reduce attack surface or maintain compliance.
Specops password auditor is a free tool that scans active directory to detect password and privileged account security vulnerabilities.
This quick tool searches through your domain controllers and checks on the last login dates for each listed account.
Dameware remote support is a great tool for remote it tasks across windows linux and macos.
This solution also provides you with status on your progress relative to microsoft s recommended roadmap for securing privilege access spa of which active directory is a.
However in spite of microsoft active directory s wide utility it can be quite inconvenient to use at times the original user interface feels very slow and there is no automation.
You can use third party tools like manageengine admanager plus to manage folder permissions through an external piece of software.
The active directory security assessment is designed to provide you specific actionable guidance to mitigate security risks to your active directory and your organization.
Although the capabilities built in to active directory are supreme they re also crude and cumbersome lacking automation role based security and web based administration often consuming more time than you have to give.
In this guide i will share my tips on securing domain admins local administrators audit policies monitoring ad for compromise password policies vulnerability scanning and much more.