Mega Menu
ManageEngine AD & IT Management Solutions
AD Domain ServicesArchitecture & Design

Federation strategies using Entra

Federation is still a critical tool in hybrid identity—but the “best” federation strategy depends on what you’re trying to achieve: modern SSO for SaaS, partner access, legacy app support, or a phased retirement of…
AD Domain ServicesArchitecture & Design

Zero Trust architecture with Entra at the core

Zero Trust Architecture with Microsoft Entra at the Core Zero Trust is not a product you “turn on.” It’s an operating model for security where every access request is treated as hostile until proven otherwise.
AD Domain ServicesArchitecture & Design

How to detect Golden Ticket attacks

How to Detect Golden Ticket Attacks in Active Directory A Golden Ticket attack is one of the most damaging post-compromise techniques in Active Directory: an attacker forges a Kerberos Ticket Granting…
AD Domain ServicesArchitecture & Design

Simulating AD attacks with Purple Team labs

Purple teaming in an Active Directory (AD) context is the discipline of running controlled, authorized attack simulations (red) while observing, tuning, and validating detection + response (blue). Done well, it turns vague goals like…
AD Domain ServicesArchitecture & Design

Detecting unauthorized domain replication

Unauthorized domain replication is one of the fastest ways for an attacker to turn “some access” into “total access.” If someone can trigger directory replication (or abuse replication rights) they can extract credential…
AD Domain ServicesArchitecture & Design

Mitigating unconstrained delegation vulnerabilities

Mitigating Unconstrained Delegation Vulnerabilities in Active Directory Unconstrained delegation is one of those “it worked in 2006” features that becomes a high-impact breach path in modern AD…

Recent Posts

AD Domain ServicesArchitecture & Design

Federation strategies using Entra

Federation is still a critical tool in hybrid identity—but the “best” federation strategy depends on what you’re trying to achieve: modern SSO for SaaS, partner access, legacy app support, or a phased retirement of…
AD Domain ServicesArchitecture & Design

Zero Trust architecture with Entra at the core

Zero Trust Architecture with Microsoft Entra at the Core Zero Trust is not a product you “turn on.” It’s an operating model for security where every access request is treated as hostile until proven otherwise.
AD Domain ServicesDirectory Objects & Identity Data

Recovering deleted users and groups in Entra

Recovering Deleted Users and Groups in Microsoft Entra ID Accidental deletion in Entra can feel like an outage: users can’t sign in, group-based access breaks, app assignments disappear, and you’re…
AD Domain ServicesArchitecture & Design

How to detect Golden Ticket attacks

How to Detect Golden Ticket Attacks in Active Directory A Golden Ticket attack is one of the most damaging post-compromise techniques in Active Directory: an attacker forges a Kerberos Ticket Granting…
AD Domain ServicesDirectory Objects & Identity Data

Mapping legacy AD groups to Entra roles

Mapping Legacy Active Directory Groups to Microsoft Entra Roles Legacy Active Directory (AD) group designs often carry years of historical decisions: “one group per admin team,” “one group per tool,”…
AD Domain ServicesArchitecture & Design

Simulating AD attacks with Purple Team labs

Purple teaming in an Active Directory (AD) context is the discipline of running controlled, authorized attack simulations (red) while observing, tuning, and validating detection + response (blue). Done well, it turns vague goals like…
WAD — Free AD Tools Banner