Active Directory Homelab

In the ever-evolving landscape of cybersecurity, practical hands-on experience is paramount. To enhance my skills and understanding, I have constructed a sophisticated Homelab network using a Dell Optiplex 7050 SFF Desktop PC. This robust machine, equipped with an Intel i7-7700 processor (4 cores, 3.60 GHz), 32GB DDR4 RAM, and a 1TB SSD, was a strategic acquisition from Amazon for approximately $300.

a dell desktop
a dell desktop

Network Infrastructure Overview

The Homelab's core infrastructure consists of four interconnected virtual machines on a VirtualBox NAT Network, aptly named 'CybLab.' This configuration ensures seamless communication, robust operation, and consistent internet connectivity, providing a simulated environment for cybersecurity exploration and testing.

Virtual Machines Configuration

  • Windows Server 2022: Serves as the domain controller and Active Directory.

  • Ubuntu Server 24.04 LTS: Functions as the Splunk Server.

  • Windows 10: Designated as the Target Machine.

  • Kali Linux: Operates as the Attack Machine.

Both the Domain Controller and the Windows 10 workstation are enhanced with Splunk Universal Forwarder and Sysmon, which capture and relay detailed telemetry data across the network. The Windows 10 workstation also includes Atomic Red Team for realistic attack simulations.

Acknowledgments

I extend my gratitude to MyDFIR on YouTube, whose detailed tutorials were instrumental in setting up this Home Lab Successfully.

This Homelab not only serves as a pivotal tool in my cybersecurity training but also stands as a testament to the integration of theory and practice in mastering digital security disciplines.