Skip to content
This repository has been archived by the owner on Sep 12, 2023. It is now read-only.

Extend Tier0 assets to non-group objects #2

Open
furmelade opened this issue Jun 23, 2023 · 3 comments
Open

Extend Tier0 assets to non-group objects #2

furmelade opened this issue Jun 23, 2023 · 3 comments

Comments

@furmelade
Copy link

Hi,
so far the T0 list is limited to group objects, but i'd suggest to extend it to several built-in objects which should always considered T0, such as:

  • Domain root object
  • AdminSDHolder object
  • TrustedDomain objects
  • krbtgt user account
  • RID-500 account
  • AAD Connect object(s)

Even possibly extending it to whole OUs and GPOs.

Let me know what you think, cheers

@JonasBK
Copy link
Collaborator

JonasBK commented Jun 27, 2023

Hi @furmelade,

Thank you for your suggestions! :)
I agree that all the assets you listed here should be part of Tier Zero.

Are you interested in making a pull request?

@furmelade
Copy link
Author

Hi @JonasBK
sure, i will create a pull request (and maybe add some more stuff) in the next couple days.

@JonasBK
Copy link
Collaborator

JonasBK commented Jun 28, 2023

Awesome - Thanks @furmelade! :)

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants