configuring-ldap-security-hardening

Community

Harden LDAP to prevent credential theft

AuthorAcczdy
Version1.0.0
Installs0

System Documentation

What problem does it solve?

This Skill hardens LDAP directory services to reduce the risk of credential harvesting, anonymous enumeration, LDAP injection, and channel binding bypass, helping teams close common identity and directory attack vectors.

Core Features & Use Cases

  • Automated Checks: Detects LDAPS availability, LDAP signing enforcement, anonymous rootDSE exposure, and channel binding configuration.
  • Actionable Recommendations: Maps findings to registry/GPO settings and provides remediation guidance for AD and LDAP servers.
  • Use Case: Run the audit in a test environment before deploying GPO changes to ensure LDAPS, signing, and channel binding are correctly enforced and documented for compliance.

Quick Start

Use the configuring-ldap-security-hardening skill to audit ldap.example.com and save the findings to ldap-report.json.

Dependency Matrix

Required Modules

ldap3

Components

scriptsreferences

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: configuring-ldap-security-hardening
Download link: https://github.com/Acczdy/MoZiSec/archive/main.zip#configuring-ldap-security-hardening

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.