* What to see and learn at NetPro Directory Experts Conference
All the talk about Active Directory in the last issue reminded me that I should give you a heads-up for NetPro’s Directory Experts Conference. The event will take place in a few weeks (see link below) and it is, by far, the best place to learn about Active Directory. Even I learn something new there every year.
In fact, DEC is going beyond just the directory with this year’s theme: “Securing Your Enterprise Infrastructure with Microsoft Identity Management Technologies.” The lineup of speakers includes the best brains from Microsoft as well as those who spend their time developing to or implementing with the identity management technologies from Redmond. Among those scheduled to speak are:
* Stuart Kwan, Microsoft director of Program Management for the Identity and Access Team in Windows Server.
* Sanjay Tandon, Microsoft program manager of IT Corporate Security.
* Alan Isham, Intel business development manager, Intel Enterprise Directory Services.
* Paul Rich, Microsoft senior systems engineer.
* Guido Grillenmeier, senior consultant of Microsoft Services Consulting at HP Consulting.
* Gil Kirkpatrick, NetPro CTO and DEC founder and facilitator.
* Don Jones, industry author and instructor at Braincore.net.
* Wook Lee, HP network infrastructure engineer.
* Jesse Sutela, HP network infrastructure engineer.
These are folks who not only can inform and instruct but also entertain while they’re doing it. Skeptical? See my review of Lee’s performance a couple of years ago at https://www.nwfusion.com/newsletters/dir/2003/0922id2.html and judge for yourself.
You might also look into the pre-conference tutorial session that Sanjay Tandon will give called “Active Directory Security Unplugged: 10 Steps to Securing Your Active Directory Environment.” This all-day training session (with breakfast and lunch breaks) will leave you perhaps more fearful about the state of your network security but also better prepared to enhance that security as you delve into these 10 steps:
1. Establish secure boundaries (designing your Forest, Domain and OU structure).
2. Establish secure collaboration (establishing external & cross-forest trusts).
3. Deploy domain controllers securely & enhance physical security.
4. Strengthen policy settings (default DC Policies, domain password, account lockout & Kerberos policies).
5. Establish secure administrative practices.
6. Secure service admin accounts and workstations.
7. Delegate administrative authority securely.
8. Secure your DNS Infrastructure.
9. Lock down access granted to Authenticated Users.
10. Restrict anonymous access to the Active Directory.
Spaces are limited and the conference has sold out the last two years, so don’t procrastinate on this one.




