¨Based on Lightweight Directory Access Protocol (LDAP)
¨Massive data repository
–Account info
–Organization units (OU)
–Security policies
–Files/Directories
–Printers
–Services
–Domains
–Inheritance rules
¨Supports Dynamic DNS (DDNS)
¨User account passwords stored in file ntds.nit
–grabbed by pwdump3 and cracked via L0phtCrack
¨