Home Child Domain Lab Setup
Post
Cancel

Child Domain Lab Setup

Preqrequisite:

Windows server 2022 :- Download

⇒ Setup for Single Domain Controller Single Domain Controller


Setting up v-DC02 which will be our [ Child Domain ]

  • We have to check that (v-DC02) is accessible from (v-DC01) by ping the DC02 from DC01

Image title

  • Setting up the DNS server

Image title

  • Note :- On the first section which is Use the following IP address we have to put v-DC02 ip
  • On the second column Use the following DNS sever addresses we have to put v-DC01 ip

    Installing AD server

⇒ Now we will be installing Active Directory Domain Services and DNS Server

Image title

Image title

  • Next

Image title

Image title

  • Tick on Active Directory Domain Services and DNS Server

Image title

  • Next

Image title

  • Next

Image title

  • Click on install

Promoting To Domain Controller

  • Click on the Warning Yellow sign Flag icon

  • Promote this server to domain controller

Image title

Image title

  • Click on Add new domain to existing domain . Select Child Domain and enter the name of your Domain name ( Parent Domain ) click on Select add cred as I mentioned before that we have to use admin cred for adding domain server to machine

  • Enter you new child domain name

Image title

Image title

  • You domain name should appear and click on that

Image title

  • Create Password for the new child domain

Image title

  • If everything went well your child domain name should appear here

Image title

  • Click on Next and Install

Image title

  • After Restarting your have successfully installed the child domain

Checking Trusts b/w Parent and Child Domain

  • Now lets back to our parent domain crt.local (i.e v-DC01)

  • Click on Start-> Active Directory Domain Trusts

Image title

Image title

  • Select crt.local Parent Domain and view Properties

Image title

  • As you can see that kid.crt.local is child of crt.local

⇒ Running Get-ADTrust -Filter * we see that the trust direction is (bidirectional) which means that members can authenticate from one domain to another when they want to access shared resources.

Image title


Completed lab setup

Finally we have successfully set up our child domain now our lab is ready to practise attacks like Parent Child Domain Trust Abuse [ Domain Admin to Enterprise Admin ].

This post is licensed under CC BY 4.0 by the author.