Statements (18)
| Predicate | Object |
|---|---|
| gptkbp:instanceOf |
gptkb:Windows_user_group
|
| gptkbp:accessibleBy |
All computers in the domain
|
| gptkbp:auditedBy |
Security logs
|
| gptkbp:canAddOrRemove |
Domain users
|
| gptkbp:canBe |
Domain-wide security settings
|
| gptkbp:canBeDeployedOn |
Software on domain computers
|
| gptkbp:canBeManagedBy |
gptkb:Active_Directory
|
| gptkbp:canDelegate |
Administrative tasks
|
| gptkbp:canReset |
User passwords
|
| gptkbp:createdBy |
Default in Active Directory domains
|
| gptkbp:memberOf |
Administrators group (on domain controllers)
|
| gptkbp:notableRelease |
Group policies
|
| gptkbp:privileges |
Full control over domain
|
| gptkbp:shouldBeLimitedTo |
Few trusted users
|
| gptkbp:target |
Privilege escalation attacks
|
| gptkbp:bfsParent |
gptkb:Read-Only_Domain_Controller_(RODC)
|
| gptkbp:bfsLayer |
8
|
| https://www.w3.org/2000/01/rdf-schema#label |
Domain Administrators
|