AD uses Kerberos version 5 as the authentication protocol in order to provide authentication between the server and the client. Kerberos v5 became the default authentication protocol for Windows Server from Windows Server 2003 onward. It is not a proprietary protocol; it is an open standard. Therefore, AD can work with any application or service that supports the same standard. Before we look into improvements in Active Directory Domain Service (AD DS) security, it is important for us to learn about how AD authentication works.
AD authentication
The Kerberos protocol
The Kerberos protocol is built to protect authentication between the server and the client in an open network. The main concept behind authentication is that...