Learn → Build → Use

Windows and Identity

Windows administration, Active Directory, identity, access, protocols, patching, and server operations.

6 learn3 build15 useBrowse all topic paths
01

Learn

Understand Windows and Identity

Academy guides that explain the concepts, architecture, decisions, and durable operator patterns.

02

Build

Practice Windows and Identity

DIY projects that turn the concepts into working systems, labs, and repeatable environments.

03

Use

Operate Windows and Identity

Free Toolchest assets for checks, scripts, evidence, reporting, and practical operator work.

AD stale computer cleanup reportA read-only Active Directory stale computer report for last logon, OU, operating system, enabled state, and cleanup planning.ScriptActive Directory and IdentityRead-onlyAll-DC lastLogon collector and stale-user evidence reportCollect non-replicated lastLogon values from every writable domain controller, calculate the newest observed logon per account, and export evidence suitable for stale-user or stale-computer cleanup decisions without relying on replicated lastLogonTimestamp alone.ScriptActive Directory and IdentityRead-onlyAuthenticated Users drive ACL scannerPowerShell scanner that checks fixed local drives on Windows servers for root ACL entries where Authenticated Users have broad access. Produces console and CSV evidence so admins can review exposure before any ACL changes.ScriptSecurity and Exposure ChecksRead-onlyCertificate expiration scannerA read-only certificate inventory that finds local-machine store certificates nearing expiration and captures certificates presented by known TLS endpoints for review.ScriptSecurity and Exposure ChecksRead-onlyDisk space cleanup candidate reportA read-only disk-pressure report that captures low-space context and returns targeted cleanup candidates from known folders without deleting, compressing, or moving anything.ScriptWindows Server HealthRead-onlyIIS site and binding inventoryA read-only IIS inventory that correlates sites, bindings, ports, host headers, app-pool identities, content paths, and certificate thumbprints for migration or renewal work.ScriptWindows Server HealthRead-onlyInactive AD user disable review workflowTwo-phase review checklist for identifying inactive AD user accounts, validating inactivity evidence, applying exclusions, capturing approval, and preparing rollback details before any disable action.ChecklistActive Directory and IdentityChanges system stateLocal administrator group audit across Windows endpointsA read-only local administrator audit that records privileged group membership across Windows endpoints for review.ScriptActive Directory and IdentityRead-onlyPending reboot detection across Windows serversA read-only pending reboot check for Windows servers before patching, application installs, or maintenance-window closure.ScriptPatch and Reboot ReadinessRead-onlyScheduled task inventory and failure reportA read-only scheduled task inventory that highlights failed runs, missed runs, disabled tasks, and ownership gaps.ScriptWindows Server HealthRead-onlyService account usage finderA read-only service account discovery pass for Windows services, scheduled tasks, and IIS application pools.ScriptActive Directory and IdentityRead-onlyWindows firewall rule auditA read-only Windows Firewall audit that records enabled allow rules, ports, profiles, and address scopes.ScriptSecurity and Exposure ChecksRead-onlyWindows server health snapshotA read-only Windows Server health snapshot that returns one compact row per host for uptime, disk pressure, memory headroom, stopped automatic services, and recent system errors.ScriptWindows Server HealthRead-onlyWindows Update readiness and repair evidence packA patch readiness and repair evidence pack for reboot state, servicing health, update logs, and approved repair actions.ChecklistPatch and Reboot ReadinessChanges system stateWindows Update Repair ChecksA staged Windows Update troubleshooting path that starts read-only and escalates only when needed.ChecklistPatchingChanges system state