Wednesday, May 12, 2010

What are Validated Writes

Validated Writes are special purpose security permissions available in Microsoft's Active Directory technology. They provide the means by which IT personnel can control who can perform certain specific critical IT operations.

In particular, certain operations on objects stored in Active Directory require additional validation prior to being committed above and beyond Schema structure enforcement validation, and validated writes provide the means by which these specific pre-commit validations can be performed during write attempts to certain properties on certain Active Directory objects.

There are three validated writes available in Active Directory, Self-Membership, Validated-DNS-Host-Name, Validated-SPN, and in this blog we will take a detailed look at all of them.