In this chapter, we learned about AD objects and attributes, and how they are defined in the AD schema. We also learned how to add custom attributes to the AD schema. Then, we looked into creating user account templates and the different types of service accounts. In an AD environment, sometimes we need to manage permissions for groups of users who have similar operation requirements (to do with their department, job role, and so on). This is done using AD groups. There are different group categories to choose from. In this chapter, we also looked into these group types and learned how to use them appropriately. In this chapter, we also went through object management best practices to help improve your AD object management experience.
In the next chapter, we will be learning about designing and managing the OU.