Skip to content
This repository has been archived by the owner on Sep 12, 2023. It is now read-only.

RODC in tier0 #3

Open
ruppde opened this issue Aug 5, 2023 · 1 comment
Open

RODC in tier0 #3

ruppde opened this issue Aug 5, 2023 · 1 comment

Comments

@ruppde
Copy link

ruppde commented Aug 5, 2023

hi,

the "Is Tier Zero" of RODCs should be DEPENDS because because the RODCs might share the DSRM password with the DCs (synced via GPO).

https://adsecurity.org/?p=3592

arnim

@JonasBK
Copy link
Collaborator

JonasBK commented Aug 8, 2023

Hi Arnim,

Thanks for your suggestion!

We only covered the RODC AD group in the first blog post / webinar, so that is the only RODC asset we have in the table so far. We will discuss the RODC computer objects and the RODC OS in a future episode. There are a lot of things to consider for RODC, and the thing you mention about the DSRM password is definitely a good point.

Thanks again,
Jonas

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants