AD Security Summary

Consolidation

Date: 07/01/2017 08:39:00


Domain information

Domain Netbios Name Domain Functional Level Forest Functional Level Creation date Nb DC Engine Level
bpx.komwkco.xer ssx Windows Server 2003 Windows Server 2003 2008-08-07 08:53:32Z 10 2.2.1 Normal
mgrl-yt.xnx.zjmaj jwmj-fp Windows Server 2008 R2 Windows Server 2008 R2 2005-01-24 11:30:17Z 2 2.2.0 Normal
Total 2



Active Directory Indicators
Domain Domain Risk Level Stale objects Privileged accounts Trusts Anomalies Generated
bpx.komwkco.xer 100 90 80 0 100 2016-09-25 13:32:02Z
mgrl-yt.xnx.zjmaj 71 69 30 70 71 2016-08-23 12:58:01Z




User Accounts
Domain Nb User Accounts Nb Enabled Nb Disabled Nb Active Nb Inactive Nb Locked Nb pwd never Expire Nb SidHistory Nb Bad PrimaryGroup Nb Password not Req. Nb Des enabled. Nb Trusted delegation Nb Reversible password
bpx.komwkco.xer 5276 5192 84 1678 3514 0 325 0 0 177 0 0 0
mgrl-yt.xnx.zjmaj 26 20 6 18 2 0 17 0 0 3 0 0 0
Total 5302 5212 90 1696 3516 0 342 0 0 180 0 0 0

Computer Accounts
Domain Nb Computer Accounts Nb Enabled Nb Disabled Nb Active Nb Inactive Nb SidHistory Nb Bad PrimaryGroup Nb Trusted delegation Nb Reversible password
bpx.komwkco.xer 1141 1141 0 1063 78 0 0 0 0
mgrl-yt.xnx.zjmaj 92 92 0 76 16 0 0 0 0
Total 1233 1233 0 1139 94 0 0 0 0

Domain Windows 2003 Windows 2008 Windows 2012 OperatingSystem not set
bpx.komwkco.xer 48 146 120 142
mgrl-yt.xnx.zjmaj 87 4
Total 135146124142

Operating System Nb
Nb RHEL : 38
Nb unknown : 131
Nb HP-UX : 58
Nb AIX : 182
Nb Linux : 156
Nb SunOS : 117
Nb HDS NAS OS : 1
Nb OnTap : 3


Admin Groups

Domain Group Name Nb Admins Nb Enabled Nb Disabled Nb Inactive Nb PWd never expire Nb can be delegated Nb external users
bpx.komwkco.xer Administrators 66 65 1 12 4 66 0
bpx.komwkco.xer Account Operators 0 0 0 0 0 0 0
bpx.komwkco.xer Server Operators 193 187 6 78 0 193 0
bpx.komwkco.xer Print Operators 0 0 0 0 0 0 0
bpx.komwkco.xer Backup Operators 0 0 0 0 0 0 0
bpx.komwkco.xer Incoming Forest Trust Builders 0 0 0 0 0 0 0
bpx.komwkco.xer Network Operators 0 0 0 0 0 0 0
bpx.komwkco.xer Domain Admins 61 60 1 9 4 61 0
bpx.komwkco.xer Enterprise Admins 1 1 0 1 1 1 0
bpx.komwkco.xer Schema Admins 1 1 0 1 1 1 0
bpx.komwkco.xer Cert Publishers 0 0 0 0 0 0 0
mgrl-yt.xnx.zjmaj Administrators 16 8 2 0 6 10 6
mgrl-yt.xnx.zjmaj Account Operators 0 0 0 0 0 0 0
mgrl-yt.xnx.zjmaj Server Operators 0 0 0 0 0 0 0
mgrl-yt.xnx.zjmaj Print Operators 0 0 0 0 0 0 0
mgrl-yt.xnx.zjmaj Backup Operators 9 7 1 0 4 8 1
mgrl-yt.xnx.zjmaj Crypto Operators 0 0 0 0 0 0 0
mgrl-yt.xnx.zjmaj Network Operators 0 0 0 0 0 0 0
mgrl-yt.xnx.zjmaj Domain Admins 10 8 2 0 6 10 0
mgrl-yt.xnx.zjmaj Cert Publishers 1 0 0 0 0 0 1


Trusts

Discovered domains
Domain Trust Partner Type Attribut Direction SID Filtering active Creation Is Active ?
bpx.komwkco.xer atzh.mok Uplevel Forest Trust Inbound Not applicable 2009-10-28 15:06:15Z True
bpx.komwkco.xer embt-nkg.mwkco.mok Uplevel Forest Trust Inbound Not applicable 2016-03-23 13:29:19Z True
bpx.komwkco.xer kqkx-ucs.mok Uplevel Forest Trust Inbound Not applicable 2009-10-28 15:25:51Z True
bpx.komwkco.xer kvnx.zjmaj Uplevel Forest Trust Inbound Not applicable 2010-10-21 09:52:03Z True
bpx.komwkco.xer kxnermf.zjmaj Uplevel Forest Trust Inbound Not applicable 2009-10-28 14:22:12Z True
bpx.komwkco.xer nbognu.mwkco.mok Uplevel Forest Trust Inbound Not applicable 2014-12-17 12:33:35Z True
bpx.komwkco.xer oaprsoo.kca Uplevel Forest Trust Inbound Not applicable 2009-10-28 15:24:46Z True
bpx.komwkco.xer rbh-ioc.komwkco.xer Uplevel Forest Trust Inbound Not applicable 2014-11-06 15:22:59Z True
bpx.komwkco.xer sczc.mwkco.mok Uplevel Forest Trust Inbound Not applicable 2016-01-12 11:09:20Z True
bpx.komwkco.xer wbh.zjmaj Uplevel Forest Trust Inbound Not applicable 2009-10-28 15:04:56Z True
bpx.komwkco.xer xdq.kca Uplevel Forest Trust Inbound Not applicable 2009-10-28 15:25:24Z True
bpx.komwkco.xer xnx.zjmaj Uplevel Forest Trust Inbound Not applicable 2016-06-27 10:53:18Z True
bpx.komwkco.xer xraqpl-nkg.mwkco.mok Uplevel Forest Trust Inbound Not applicable 2014-12-17 11:36:02Z True
mgrl-yt.xnx.zjmaj cp.inins.zjmaj Uplevel Inter-Forest Bidirectional No 2011-08-12 14:02:52Z True
mgrl-yt.xnx.zjmaj dgqptpax.xxsb.ma Uplevel Quarantined Domain Bidirectional Yes 2007-11-20 15:39:54Z True
mgrl-yt.xnx.zjmaj fbbwrlwh-drb.ysau.zjmaj Uplevel Quarantined Domain Bidirectional Yes 2011-10-05 16:18:38Z True
mgrl-yt.xnx.zjmaj iyn.zjmaj Uplevel Quarantined Domain Bidirectional Yes 2008-07-09 06:19:49Z True
mgrl-yt.xnx.zjmaj iyv.yqkie-hs.neex Uplevel Quarantined Domain Bidirectional Yes 2008-10-24 15:07:41Z True
mgrl-yt.xnx.zjmaj jctav.bc Uplevel Quarantined Domain Bidirectional Yes 2007-09-26 12:58:24Z True
mgrl-yt.xnx.zjmaj mj.ossmy Uplevel Quarantined Domain Bidirectional Yes 2016-03-16 05:28:33Z True
mgrl-yt.xnx.zjmaj mpx.zjmaj Uplevel Quarantined Domain Bidirectional Yes 2007-02-01 09:32:39Z True
mgrl-yt.xnx.zjmaj oyne.zjmaj Uplevel Quarantined Domain Bidirectional Yes 2008-07-08 10:51:25Z True
mgrl-yt.xnx.zjmaj pro.pd Uplevel Quarantined Domain Bidirectional Yes 2016-03-23 02:25:54Z True
mgrl-yt.xnx.zjmaj xnx.zjmaj Uplevel Intra-Forest Bidirectional Not applicable 2005-01-24 11:30:20Z True
mgrl-yt.xnx.zjmaj xny.ltqoorea Uplevel None Inbound Not applicable 2010-10-28 15:23:11Z False
mgrl-yt.xnx.zjmaj zevmytwrlj.zjmaj Uplevel Quarantined Domain Bidirectional Yes 2010-08-17 15:44:13Z True

Other discovered domains
From Reachable domain Via Netbios Creation date
bpx.komwkco.xer pkj.ltcd.mok atzh.mok xyrn 2009-10-28 16:22:23Z
bpx.komwkco.xer brw-kkb.vqnt-ucs.mok kqkx-ucs.mok ltcd-zrc 2009-10-28 16:19:05Z
mgrl-yt.xnx.zjmaj b00.xnx.zjmaj xnx.zjmaj n00 2009-08-17 14:06:18Z
mgrl-yt.xnx.zjmaj b05.xnx.zjmaj xnx.zjmaj n05 2015-01-19 11:00:53Z
mgrl-yt.xnx.zjmaj b10.xnx.zjmaj xnx.zjmaj n10 2009-09-11 07:03:04Z
mgrl-yt.xnx.zjmaj b11.xnx.zjmaj xnx.zjmaj n11 2016-02-17 11:21:38Z
mgrl-yt.xnx.zjmaj b12.xnx.zjmaj xnx.zjmaj n12 2016-04-08 10:06:31Z
mgrl-yt.xnx.zjmaj b13.xnx.zjmaj xnx.zjmaj n13 2016-06-03 12:53:08Z
mgrl-yt.xnx.zjmaj b20.xnx.zjmaj xnx.zjmaj n20 2012-04-05 14:39:52Z
mgrl-yt.xnx.zjmaj b21.xnx.zjmaj xnx.zjmaj n21 2012-03-12 10:49:45Z
mgrl-yt.xnx.zjmaj b22.xnx.zjmaj xnx.zjmaj n22 2013-07-09 10:11:09Z
mgrl-yt.xnx.zjmaj b27.xnx.zjmaj xnx.zjmaj n27 2016-02-22 17:06:41Z
mgrl-yt.xnx.zjmaj b28.xnx.zjmaj xnx.zjmaj n28 2014-03-24 13:52:26Z
mgrl-yt.xnx.zjmaj b29.xnx.zjmaj xnx.zjmaj n29 2010-07-15 13:58:28Z
mgrl-yt.xnx.zjmaj b30.xnx.zjmaj xnx.zjmaj n30 2010-06-18 13:24:49Z
mgrl-yt.xnx.zjmaj b40.xnx.zjmaj xnx.zjmaj n40 2010-12-24 10:17:07Z
mgrl-yt.xnx.zjmaj b41.xnx.zjmaj xnx.zjmaj n41 2016-08-11 14:57:10Z
mgrl-yt.xnx.zjmaj b50.xnx.zjmaj xnx.zjmaj n50 2009-08-14 12:35:50Z
mgrl-yt.xnx.zjmaj b51.xnx.zjmaj xnx.zjmaj n51 2014-02-24 13:54:19Z
mgrl-yt.xnx.zjmaj b52.xnx.zjmaj xnx.zjmaj n52 2012-10-12 09:56:00Z
mgrl-yt.xnx.zjmaj b53.xnx.zjmaj xnx.zjmaj n53 2013-08-21 08:16:24Z
mgrl-yt.xnx.zjmaj b54.xnx.zjmaj xnx.zjmaj n54 2015-02-20 09:23:06Z
mgrl-yt.xnx.zjmaj b55.xnx.zjmaj xnx.zjmaj n55 2015-08-07 10:25:26Z
mgrl-yt.xnx.zjmaj b59.xnx.zjmaj xnx.zjmaj n59 2009-08-14 13:22:54Z
mgrl-yt.xnx.zjmaj b60.xnx.zjmaj xnx.zjmaj n60 2009-08-18 07:57:17Z
mgrl-yt.xnx.zjmaj b61.xnx.zjmaj xnx.zjmaj n61 2009-11-04 12:51:01Z
mgrl-yt.xnx.zjmaj b62.xnx.zjmaj xnx.zjmaj n62 2010-10-20 14:36:50Z
mgrl-yt.xnx.zjmaj b63.xnx.zjmaj xnx.zjmaj n63 2012-01-20 06:44:07Z
mgrl-yt.xnx.zjmaj b64.xnx.zjmaj xnx.zjmaj n64 2012-08-27 10:41:39Z
mgrl-yt.xnx.zjmaj b70.xnx.zjmaj xnx.zjmaj n70 2009-08-17 13:11:31Z
mgrl-yt.xnx.zjmaj b79.xnx.zjmaj xnx.zjmaj n79 2016-04-21 07:59:35Z
mgrl-yt.xnx.zjmaj b80.xnx.zjmaj xnx.zjmaj n80 2011-10-19 13:39:47Z
mgrl-yt.xnx.zjmaj b81.xnx.zjmaj xnx.zjmaj n81 2013-07-16 15:34:29Z
mgrl-yt.xnx.zjmaj b82.xnx.zjmaj xnx.zjmaj n82 2013-08-20 13:24:04Z
mgrl-yt.xnx.zjmaj b83.xnx.zjmaj xnx.zjmaj n83 2015-05-07 10:46:07Z
mgrl-yt.xnx.zjmaj b90.xnx.zjmaj xnx.zjmaj n90 2015-04-21 10:15:49Z
mgrl-yt.xnx.zjmaj b91.xnx.zjmaj xnx.zjmaj n91 2015-05-07 12:56:24Z
mgrl-yt.xnx.zjmaj b92.xnx.zjmaj xnx.zjmaj n92 2015-05-07 14:31:56Z

SID Map
Domain Domain SID
atzh.mok S-1-5-21-1409082233-1563985344-725345543
bpx.komwkco.xer S-1-5-21-213333089-4219509619-4149866569
brw-kkb.vqnt-ucs.mok S-1-5-21-256169636-1739866134-2952739675
cp.inins.zjmaj S-1-5-21-4045428436-4270167888-1468999341
dgqptpax.xxsb.ma S-1-5-21-967450257-169676594-1792151419
embt-nkg.mwkco.mok S-1-5-21-1253744587-2188327988-1824056176
fbbwrlwh-drb.ysau.zjmaj S-1-5-21-2788758210-2221608233-622948200
iyn.zjmaj S-1-5-21-3509744856-3630887778-2188386265
iyv.yqkie-hs.neex S-1-5-21-4259781962-863451147-2095348706
jctav.bc S-1-5-21-106724689-1965243010-2013803672
kqkx-ucs.mok S-1-5-21-1255123597-3333238923-1218471537
kvnx.zjmaj S-1-5-21-3976930326-3761794417-1450537309
kxnermf.zjmaj S-1-5-21-593219604-2822861887-2832908765
mgrl-yt.xnx.zjmaj S-1-5-21-2744401449-465424918-1861196152
mj.ossmy S-1-5-21-2755878404-3121640850-827904848
mpx.zjmaj S-1-5-21-1012275031-1358699968-1538882281
nbognu.mwkco.mok S-1-5-21-875958168-1235486164-1929978929
oaprsoo.kca S-1-5-21-966893215-2514343021-1679189411
oyne.zjmaj S-1-5-21-2399815581-4232669512-1359133735
pkj.ltcd.mok S-1-5-21-1409082233-1417001333-682003330
pro.pd S-1-5-21-267794768-1659270026-622671684
rbh-ioc.komwkco.xer S-1-5-21-858150965-2119813234-1307250331
sczc.mwkco.mok S-1-5-21-1281050579-1898869699-2047306096
wbh.zjmaj S-1-5-21-1320054539-1448005516-2631837365
xdq.kca S-1-5-21-1702416707-3286972647-1493977119
xnx.zjmaj S-1-5-21-1206779787-896296972-1300041293
xny.ltqoorea S-1-5-21-781742635-912293393-1307212239
xraqpl-nkg.mwkco.mok S-1-5-21-3058798530-2158838680-1963886667
zevmytwrlj.zjmaj S-1-5-21-1171540486-1946888010-929701000



Password Policy

Domain Policy Name Complexity Max Password Age Min Password Age Min Password Length Password History Reversible Encryption Lockout Threshold Lockout Duration Reset account counter locker after
bpx.komwkco.xer Default Domain Policy True 60 0 8 15 False 5 -1 99999
bpx.komwkco.xer W2K3 Policy - Adapted W2K3 Domain Policy True 60 0 8 15 False 5 -1 99999
mgrl-yt.xnx.zjmaj Default Domain Policy True 90 1 8 4 False 7 -1 10

Screensaver policies
Domain Policy Name Screensaver enforced Password request Start after (seconds) Grace Period (seconds)
mgrl-yt.xnx.zjmaj CFG-SCR-UserScreensaverCompany True True 900 Not Set
mgrl-yt.xnx.zjmaj CFG-DefaultUserSettings-Company Not Set Not Set 900 Not Set
mgrl-yt.xnx.zjmaj CFG-DefaultUserSettings-othercompany Not Set Not Set 900 Not Set

LSA settings
Domain Policy Name Setting Value
bpx.komwkco.xer W2K8 R2 Policy - Acceptance fdsfsdfds Server EveryoneIncludesAnonymous 1
bpx.komwkco.xer W2K3 Policy - qdssdqsdsqd EveryoneIncludesAnonymous 1
bpx.komwkco.xer W2K3 Policy - Ddsqdsqfvsqvs RestrictAnonymous 0
bpx.komwkco.xer W2K8 R2 Policy - Production xvcvcx EveryoneIncludesAnonymous 1
bpx.komwkco.xer W2K8 R2 Policy - Production vcxvx RestrictAnonymous 0
bpx.komwkco.xer W2K8 R2 Policy - Production ngnfgf RestrictAnonymousSam 0
bpx.komwkco.xer Default Domain Controllers Policy LmCompatibilityLevel 2
bpx.komwkco.xer W2K3 Policy - Production Domain Controller RestrictAnonymous 0
bpx.komwkco.xer W2K3 Policy - Production Domain Controller RestrictAnonymousSam 0
bpx.komwkco.xer W2K3 Policy - Production Domain Controller RestrictAnonymous 0
bpx.komwkco.xer W2K3 Policy - Production Domain Controller LmCompatibilityLevel 1
bpx.komwkco.xer W2K8 R2 Policy - fbfbf RestrictAnonymous 0
bpx.komwkco.xer W2K8 R2 Policy - kkkhh RestrictAnonymousSam 0
bpx.komwkco.xer W2K8 R2 Policy - zetnnf EveryoneIncludesAnonymous 1
mgrl-yt.xnx.zjmaj Default Domain Controllers Policy LmCompatibilityLevel 2
mgrl-yt.xnx.zjmaj Default Domain Controllers Policy RestrictAnonymous 0
mgrl-yt.xnx.zjmaj Default Domain Controllers Policy RestrictAnonymousSam 0
mgrl-yt.xnx.zjmaj Default Domain Controllers Policy RestrictAnonymous 0


Anomalies

krbtgt
Domain Krbtgt AdminSDHolder DC with null session Smart card account not update
bpx.komwkco.xer 2008-08-07 10:56:22Z 85 6 0
mgrl-yt.xnx.zjmaj 2014-09-03 11:48:30Z 0 2 0

GPO

Obfuscated Password

Domain GPO Name Password origin UserName Password Changed Other