Windows Fundamentals: Active Directory, Identity & Administration

Cornerstone guide

Windows Fundamentals: Active Directory, Identity & Administration

2 min readPublished 22 Jul 2026

Track your progress. Sign in to mark this guide complete and build your Job Readiness Score.

Your progress on this path

Sign in to track your progress, "you are here" position and Job Readiness on this path.
  1. Active Directory Explained: Forests, Domains, OUs & Objects
  2. Windows Authentication: Kerberos vs NTLM
  3. LDAP Explained: How Apps Query the Directory
  4. Group Policy Explained: Configure Windows at Scale
  5. Windows PKI & Certificates Explained
  6. DNS & DHCP in Windows Explained
  7. Microsoft Entra ID Explained (formerly Azure AD)
  8. PowerShell for Windows: The Essentials
  9. Windows Administration: The Everyday Toolkit

Windows and Active Directory sit at the heart of almost every organisation you'll ever support — which is why Windows fundamentals underpin CompTIA A+, Network+ and Security+, every Microsoft and Azure pathway, and roles from Help Desk to SOC Analyst. This free path teaches the concepts employers assume you already understand.

Interactive explainer

Active Directory Domain Services

How Windows organises and secures an entire organisation.

11. Forest & domain22. Domain controllers33. Organisational Units44. Objects & attributes

Tap or hover a part to learn more.

1. Forest & domain

The top of the tree.

Active Directory Domain Services (AD DS) organises an organisation into a forest (the top-level security boundary) containing one or more domains. A domain is an administrative and authentication boundary — e.g. corp.example.com.

Check your understanding

1. What is the top-level security boundary in Active Directory?

2. What are Organisational Units (OUs) primarily used for?

Practise this in AI Interview™

Why Windows fundamentals matter

Learn these once and you'll reuse them everywhere. Active Directory identity, Kerberos authentication, Group Policy and DNS are the same whether you're troubleshooting a locked-out user on a help desk, hardening a domain for a security role, or extending identity to the cloud with Microsoft Entra ID. Employers rarely test them explicitly — they simply expect them.

What this path covers

Where this fits in your career

This path is the bridge between hardware/OS basics (A+) and specialist roles. Combine it with our free Networking Fundamentals path and CompTIA Security+ guide, then prove you can explain it out loud with Missiora's AI Interview™, plan your route with Career Coach™ and evidence it in your Career Passport™.

Start with Active Directory.

Interview Intelligence

How this topic actually shows up in interviews — and how to demonstrate you understand it.

Why employers ask about this

Windows and Active Directory are everywhere, so employers assume you understand identity, authentication and policy. Interviewers probe these to check you can support and secure a real domain, not just pass an exam.

Technical questions
What is Active Directory and why does it matter?+

It's Microsoft's directory service that centralises identity, authentication and policy for an organisation. It matters because it controls who can access what across every domain-joined machine.

Behavioural questions
How do you approach learning a large, unfamiliar Windows environment?+

Start with the identity and structure (forest/domains/OUs), then authentication and policy, documenting as you go — because you can't support or secure what you don't understand.

Real-world scenarios
“A user can log into their laptop but not access the file server.”+

Expected answer: Reason from authentication (Kerberos ticket, clock skew) and authorisation (group membership, share/NTFS permissions) rather than guessing — showing you connect identity to access.

Common misconceptions

What candidates get wrong in interviews and on the job — and what strong professionals actually do.

Myth

'Active Directory and Entra ID are the same thing.'

Reality

on-prem AD DS uses Kerberos/LDAP; Entra ID is a cloud identity provider using OAuth/OIDC/SAML.

Myth

'Windows admin is just clicking through the GUI.'

Reality

real environments are managed with Group Policy and PowerShell at scale.

Employability Intelligence

Where this knowledge takes you — the jobs, skills and certifications it feeds into.

Relevant roles
Help Desk AnalystDesktop SupportSystems AdministratorSOC AnalystSecurity Engineer
Skills you're proving
Active DirectoryAuthenticationGroup PolicyPowerShellTroubleshooting
Recommended certifications
Career progression

Help Desk → Desktop Support → Systems Administrator → Infrastructure/Security Engineer.

What employers expect

That you understand identity, authentication and policy well enough to support and secure a Windows domain.

Frequently asked questions

Do I need Windows fundamentals for CompTIA exams?

Yes. A+, Network+ and especially Security+ assume you understand Active Directory, authentication, DNS and policy.

Is this path vendor-neutral?

It's Windows-focused but conceptual — the identity, authentication and policy concepts transfer to Microsoft and Azure certifications.

What roles is this useful for?

Help Desk, Desktop Support, Systems Administrator, SOC Analyst and Security Engineer roles all rely on these fundamentals.

Related guides

Practise what you've learned

Turn this guide into real, evidenced progress

Missiora helps you measure, improve and evidence the capabilities employers actually value — start with the tools best suited to this topic.

M
Published by
Missiora

Missiora is an AI Employability Intelligence platform. Our resources are researched and reviewed by the Missiora team to help you measure, improve and prove your career readiness.