02-ActiveDirectory

DOWNLOAD

download1

  • Download the ISO in 64 bits in English

VIRTUALBOX SETTING

  • Create a new virtual machine

vm01 vm02 vm03 vm04 vm05 vm6

  • Go to the VM properties

  • In Network tab, change the configuration to use internal network : GREEN

vm7

  • Launch the VM

    • It will ask you wich ISO Virtualbox must mount on the VM, load the Windows Server one.

INSTALLATION OF WINDOWS

  • Select the English language to install.

    • The other setting can be adjust with your favorite configuration but in IT you must install Windows in English !

install01

  • Select "install now"

  • Select "Windows Server 2022 Datacenter Evaluation (Desktop Experience)".

    • For a lab, the GUI can be usefull if you start your carrier in IT.

install02

  • Accept software licence

  • Select Custom install

install03

  • Select the only drive mount and click "next"

install04

  • Waiting for install and reboot

  • Set your password (remember it's a lab, you can have a low password)

CONFIGURATION OF WINDOWS

  • Connect to your administrator account

  • Go to "Open Network & Internet Setting"

ad1

  • Change adapter options

ad2

  • Select your card properties

  • Go to "Internet Protocol Version 4" > Properties

ad3

  • Give IP

ad4

  • Try to join the gateway (so your LAN INTERFACE in pfsense)

ad5

  • Rename the server with a easy name to remember/use.

ad6 ad7

  • Restart your VM

INSTALLATION OF ACTIVE DIRECTORY

  • Connect to your administrator account

  • Select "Add roles and features"

ad8

  • Add a role-based installation

  • Select the only server you've got

  • Add "Active Directory Domain Services"

ad9 ad10

  • Left the other windows with defaults configurations

  • After it's finish, promote this server to a domain controller

ad11

  • Add a new forest

ad12

  • Left default configuration and give a password

ad13

  • Left DNS part by default

  • Check the netbios domain name (this will give you want you will have to write before the )

  • Left the default path

  • Launch the install

  • Reboot when asked for it

CONFIGURATION OF ACTIVE DIRECTORY

Now you have a Active Directory Server, you need to populate it with missconfiguration to perform analysis. To do it easily, we gonna use BadBloud

  • Download it on the AD

  • Extract it

  • Launch Powershell as administrator

  • Go to Badblood folder

  • Launch Invoke-BadBlood.ps1

  • Let the magic happen (this can take several minutes)

badblood1 badblood2

Now, you have a shitty Active Directory configuration (2500 users, 500 groups, OU, 100 computers, etc.), have fun !

Last updated