The Dutch Hacker
active directory basics

Active Directory Basics on Tryhackme

This is the write up for the room Active Directory Basics on Tryhackme and it is part of the complete beginners path

Make connection with VPN or use the attackbox on Tryhackme site to connect to the Tryhackme lab environment.

Tasks Active Directory Basics

Task 1

Read all that is in the task and press complete

Task 2

All the answers can be found in the explanation of the task

2.1 What database does the AD DS contain?

Answer: NTDS.dit

2.2 Where is the NTDS.dit stored?

Answer:  %SystemRoot%\NTDS

2.3 What type of machine can be a domain controller?

Answer: Windows Server

Task 3

All the answers can be found in the explanation of the task

3.1 What is the term for a hierarchy of domains in a network?

Asnwer: Tree

3.2 What is the term for the rules for object creation?

Answer Domain Schema

3.3 What is the term for containers for groups, computers, users, printers, and other OUs?

Answer: Organizational Units

Task 4

All the answers can be found in the explanation of the task

4.1 Which type of groups specify user permissions?

Answer: security groups

4.2 Which group contains all workstations and servers joined to the domain?

Answer Domain Computers

4.3 Which group can publish certificates to the directory?

Answer Cert Publishers

4.4 Which user can make changes to a local machine but not to a domain controller?

Answer local administrators

4.5 Which group has their passwords replicated to read-only domain controllers?

Awnser Allowed RODC Password Replication Group

Task 5

All the answers can be found in the explanation of the task

5.1 What type of trust flows from a trusting domain to a trusted domain?

Answer Directional

5.2 What type of trusts expands to include other trusted domains?

Anwser Transitive

Task 6

All the answers can be found in the explanation of the task

6.1 What type of authentication uses tickets? 

Answer Kerberos

6.2 What domain service can create, validate, and revoke public key certificates?

Answer Certificate Services

Task 7

All the answers can be found in the explanation of the task

Active Directory Basics

7.1 What is the Azure AD equivalent of LDAP?

Answer Rest APIs

7.2 What is the Azure AD equivalent of Domains and Forests?

Answer Tenants

7.3 What is the Windows Server AD equivalent of Guests?

Asnwer Trust

Task 8

Deploy The machine attached to this Task. Connect to it as described in the task. I use SSH to connect to the machine

Powerview

8.1 What is the name of the Windows 10 operating system?

Type in the command:

Get-NetComputer -fulldata | select operatingsystem
Answer Windows 10 Enterprise Evaluation

8.2 What is the second “Admin” name?

Type in the command

Get-NetlocalGroup
Active Directory Basics

You can also type

Get-NetUser | Select cn
Answer : Admin2

8.3 Which group has a capital “V” in the group name?

Type in

Net localgroup
Active Directory Basics
Answer Hyper-V Administrators

8.4 When was the password last set for the SQLService user?

Type in the command

get-netuser | Select Displayname,pwdlastset
Answer 5/13/2020 8:26:58 PM

Most Popular Post

Sign Up

Signup today for free and be the first to get notified on new updates.
* indicates required

Follow Me

Most Popular Post

Contact Us