Skip to content

Commit 008e135

Browse files
Typos
1 parent 953f1ad commit 008e135

File tree

1 file changed

+2
-3
lines changed

1 file changed

+2
-3
lines changed

ADDS/README.md

Lines changed: 2 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1185,12 +1185,11 @@ Some security experts also [recommend using IPSec with null encapsulation to pro
11851185
They argue that Privileged Access Workstations (PAWs) are somewhat portable
11861186
and might not always be located within a well-defined administrative subnet.
11871187
While this point is valid, it raises the question of why RDP should be treated so differently,
1188-
considering that RDP is just one of many [remote administration protocols](#identifying-management-traffic)\
1188+
considering that RDP is just one of many [remote administration protocols](#identifying-management-traffic)
11891189
that could be exploited by malicious actors.
11901190
IPSec enforcement must also be taken into account when planning for disaster recovery.
11911191
Microsoft even [recommends](https://learn.microsoft.com/en-us/windows-server/identity/ad-ds/plan/security-best-practices/securing-domain-controllers-against-attack#domain-controller-operating-systems)
1192-
installing domain controllers with the `Server Core` option and managing them remotely using RSAT instead of RDP.
1193-
1192+
installing domain controllers with the **Server Core** option and managing them remotely using RSAT instead of RDP.
11941193
Moreover, many IT environments are not mature enough to support a full PAW deployment.
11951194
However, they can at least implement Tier 0 jump hosts, which should ideally be protected by MFA.
11961195
In designing the `DCFWTool` to be usable by over 90% of organizations "as is",

0 commit comments

Comments
 (0)