armourinfosec GitHub avatar

Enterprise-Windows-Infrastructure-Security

armourinfosec

一个为期四个月、以实验驱动的课程,涵盖企业级Windows基础架构管理与安全加固,包含20个模块、7个实践实验室和10个毕业项目,从首次登录到紫队实践循序渐进。

Stars

83

7 天增长

暂无数据

Fork 数

35

开放 Issue

0

开源协议

CC-BY-4.0

最近更新

2026-07-22

AI 仓库情报摘要
FR-AI / ANALYSIS

为什么值得关注

该课程独特地将安全加固融入每个服务模块而非事后补充,并提供一条从初学者到高级Windows服务器管理与防御的完整、自定进度、实验驱动的路径。

适合谁使用

  • 寻求实用Windows服务器管理技能的IT专业人员
  • 向企业级角色过渡的系统管理员
  • 希望获得Windows加固与紫队实战经验的安全分析师
  • 准备Microsoft AZ-800/AZ-801或CompTIA Server+认证的学生

典型使用场景

  • 在隔离实验室中构建并防御完整的企业级Windows域环境
  • 通过考试对齐的内容准备Windows服务器管理认证
  • 在受控环境中实践紫队攻击与防御技术
  • 为生产Windows环境开发可复现的加固基线

项目优势

  • 以实验驱动的教学设计,提供真实的`corp.local`域示例与可复现的步骤
  • 模块化结构,包含前置条件连锁与交叉引用,既适合顺序学习也适合参考查阅
  • 安全集成在每个服务模块中(最小权限、审核、防火墙),并有专门的紫队毕业项目
  • 与多项认证(AZ-800、AZ-801、CompTIA Server+、Network+)高度对齐

使用前须知

  • 需要支持硬件虚拟化(VT-x/AMD-V)的主机以及至少16 GB RAM才能运行多VM实验室
  • 仅关注本地Windows服务器,未涵盖Azure混合或云原生服务
  • 攻击者练习严格限制在隔离实验室环境中,可能不适用于所有学习者的安全策略

README 快速开始

Enterprise Windows Infrastructure & Security

A four-month, lab-driven curriculum that takes a learner from first logon to designing, running, and hardening a full stack of enterprise Windows services — the operating system and command line, Active Directory, Group Policy, DNS, DHCP, file and web services, remote access, backup, monitoring, and the security and purple-team practice that keep a production Windows estate defensible.

Curriculum home: Repository README


Course Information

PropertyValue
Course TitleEnterprise Windows Infrastructure & Security
FolderEnterprise-Windows-Infrastructure-Security/
TagWindows Server Administration & Security
Slugwindows-infra
LevelBeginner to Advanced
Duration4 Months (16 Weeks · 1 Hour/Day · ~120 Hours)
FocusWindows Server Administration & Enterprise Hardening
Reference SystemsWindows Server 2019 / 2022 / 2025 · Windows 10 / 11
Modules20
DeliverySelf-paced notes + hands-on labs
LanguageEnglish

[!NOTE] What this course is A study-and-practice track built as an Obsidian knowledge base and published as GitHub-flavored Markdown. Each module is a folder with its own Readme hub and a set of deep-dive notes containing tagged, copy-ready commands and configuration. It is designed to be read in order but is fully cross-linked for reference use.


Course Description

Master Windows Server administration and defensive hardening end to end: the operating system, the command line, and PowerShell; virtualization and lab setup; networking fundamentals; then the core enterprise identity and infrastructure services — Active Directory Domain Services, Group Policy, DNS, and DHCP — followed by file services and DFS, IIS web hosting, FTP, proxy, and remote-access/VPN. The program closes with server management, backup and disaster recovery, monitoring and logging, and a dedicated enterprise-security and purple-team practice.

The course is delivered through extensive, reproducible hands-on labs modelled on a real corp.local domain, so every concept is paired with a working configuration you can build, break, attack, and harden.


Overview

The Enterprise Windows Infrastructure & Security program provides practical, enterprise-ready skills

项目描述

An Obsidian-based knowledge base for Windows Server administration and defensive hardening.

相关仓库与替代方案

根据分类、Topic 和编程语言匹配的相似项目。

m-novotny
精选
m-novotny GitHub avatar

memguard-rs

A Rust library that provides secure memory handling primitives including zeroization on drop, memory locking, constant-time comparison, and compile-time guarded regions, with zero dependencies and no_std support.

嵌入式与物联网安全
131
AgriciDaniel
精选
AgriciDaniel GitHub avatar

anti-slop

Anti-slop is a tool for detecting and repairing substance defects in AI-assisted prose, code, documentation, and agent output using deterministic scanners and structural procedures that produce verifiable artifacts rather than authorship judgments.

AI 与机器学习大语言模型
9
Kritt-ai
Kritt-ai GitHub avatar

open-kritt

open·kritt is an open-source, self-hosted platform that orchestrates AI agents to perform focused, parallel code analysis for finding real vulnerabilities, with de-duplication and validation.

JavaScript
436