Designing a Delegation Model in Active Directory: Part 2

January 21, 2024
This is part 2 of “Designing a delegation model in Active Directory”. In Part 1, Mahdi discussed the general concepts of delegation and why even delegation based on least privilege is a must in Active Directory. In this part, he explains the different methods of applying delegation in Active Directory and suggests a framework based on the concepts of least privilege. This framework can be expanded to include other areas of infrastructure. For example, the same concepts can be used to implement the least privilege delegation to manage the VMware solution or Azure Resources. However, the focus here is Active Directory.

Mahdi Tehrani

Mahdi Tehrani has been involved with Active Directory and Azure AD for about 10 years. He works as an IAM consultant for “iC Consult” and his fields of expertise are around anything Active Directory, PowerShell, Azure AD and identity solutions including Quest One Identity.