1.What is a directory server, and what is it optimized for?
2.How does LDAP relate to Active Directory?
3.What does an LDAP bind operation actually establish?
4.What is the key difference between a simple bind and a SASL bind?
5.Why does a plain LDAP bind on port 389 pose a security risk?
6.Why can a tool like BloodHound enumerate a domain using a low-privileged account, with no exploit involved?