19.07.2013 Views

ACTIVE DIRECTORY SECURITY CHECKLIST ... - Leet Upload

ACTIVE DIRECTORY SECURITY CHECKLIST ... - Leet Upload

ACTIVE DIRECTORY SECURITY CHECKLIST ... - Leet Upload

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Active Directory Checklist, V1R1.2 Field Security Operations<br />

22 September 2006 Defense Information Systems Agency<br />

Section 2 Review Results Report<br />

This section is a template that allows a reviewer to manually document<br />

details about the object of the review and the vulnerabilities found during<br />

the review process. Information about the items listed is obtained through<br />

the procedures documented in Sections 3 and 5.<br />

Section 3 System Administrator /Information Assurance Officer Interview Questions<br />

This section documents the questions that a reviewer discusses with the<br />

System Administrator (SA) or Information Assurance Officer (IAO)<br />

during the review process. The items reviewed correspond to a subset of<br />

those listed in Section 2.<br />

Section 4 Automated Check Procedures<br />

This section is reserved for the procedures to be developed at a later time<br />

to perform a review using automated procedures.<br />

Section 5 Manual Check Procedures<br />

This section documents the procedures to be used to perform a review<br />

manually. The items reviewed correspond to a subset of those listed in<br />

Section 2.<br />

Appendix A Object Permissions and Audit Settings<br />

This appendix documents any required Access Control Lists (ACLs) and<br />

audit settings for file, registry, and AD objects. The tables in this appendix<br />

are referenced in Section 5.<br />

Appendix B Documentation<br />

This appendix consists of two parts. The first part provides guidance on<br />

gathering information before the review trip. The second part provides<br />

examples of documentation used to satisfy some requirements. The<br />

examples in this appendix are referenced in Section 5.<br />

Appendix C VMS Process Guidance<br />

This appendix provides guidance for entering and accessing the asset<br />

information in VMS for the items covered by the Checklist.<br />

Appendix D Directory Information Gathering<br />

This appendix describes tools and methods that could be used to gather<br />

directory information.<br />

1.3 Supported Versions<br />

This document describes processes to review an AD environment composed of Windows 2000<br />

Server or Windows Server 2003 domain controllers.<br />

UNCLASSIFIED<br />

1-2

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!