Picture of Brian Desmond

Brian Desmond

Brian is a principal at Ravenswood Technology Group where he leads a team of professionals focused on delivering best-in-breed consulting services for the Microsoft security and identity management ecosystem. Brian has been recognized annually as a Microsoft MVP since 2003 and is the author of the fourth and fifth editions of Active Directory from O'Reilly.

In today’s business environment, the security perimeter has evolved beyond traditional network boundaries. Every device that connects to your network—from laptops and smartphones to servers and IoT devices—represents a potential [...]

Trying to understand the differences between Microsoft Entra Plan 1 (P1) and Plan 2 (P2)? You’re not alone. Many organizations are tasked with understanding how each of these identity management [...]

The Kerberos authentication protocol, developed by the Massachusetts Institute of Technology (MIT), is an often-discussed topic because it is a stronger form of authentication when compared to the NT Lan [...]

Maintaining security in a Windows environment is important to reduce the risk of bad actors being able to cause harm to an organization. Although Windows is built to be secure [...]

Public key infrastructure (PKI) is the bedrock of modern telecommunications. It is a foundational technology to uniquely identify clients and facilitate their secure transmission and storage of data between public [...]

There are many components of Microsoft Active Directory Domain Services (AD DS) that can be assessed as part of a health check. Which ones to start with is, of course, [...]

Microsoft Active Directory (AD) serves many purposes. The most important role it provides is authentication. To make authentication painless, Windows (and non-Windows) systems use AD to authenticate user accounts and [...]

[WEBINAR] Protecting Privileged Access with Just-in-Time Elevation and Privileged Access Workstations Watch Ravenswood Principal Brian Desmond’s on-demand session on implementing Privileged Access Workstations (PAWs) and Just-in-Time (JIT) access strategies. The [...]

In a previous blog post, we covered how to migrate to Windows Local Administrator Password Solution (LAPS). With Windows LAPS deployments gaining traction, it’s important to review configuration items and [...]

[WEBINAR] TEC Talk: What Should and Should Not Be in Your Active Directory Disaster Recovery Plan Regularly enhancing and testing your AD disaster recovery plan is a must, and we [...]