Conflicting Security Principals

low

Description

The multi-master replication system of Active Directory generally works well, but conflicts can arise for various reasons and require manual resolution.

Solution

To enhance infrastructure consistency and prevent identity confusion, remove duplicated security principals.

See Also

Active Directory: Duplicate Object Name Resolution

sAMAccountName is always unique in a Windows domain… or is it?

Using conflicting objects in Active Directory to gain privileges

Indicator Details

Name: Conflicting Security Principals

Codename: C-CONFLICTED-OBJECTS

Severity: Low

MITRE ATT&CK Information: