Chapter 4
Securing Active Directory Objects and Attributes
All objects and attributes in the Active Directory directory service are individually secured though the use of discretionary access control lists. Although the default security on Active Directory might be suitable for your organization, you might need to adjust the security of objects or attributes to increase the overall security of Active Directory. You also might need to delegate authority over objects or attributes, or create custom objects and attributes that need to have security defined for them. For each of these situations, you must know how Active Directory objects are secured by default and how you can configure permissions.