Active Directory Domain Controller (AD DC) authenticates and authorizes all users and computers on a Windows domain network by assigning and enforcing security policies. It uses LDAP, Kerberos, and DNS to authenticate users and determine their access privileges when they log in. To configure a server as an AD DC, an administrator opens Server Manager, adds the Active Directory Domain Services role, and runs through a wizard to create a new domain forest, set the domain name and password, configure DNS, and restart the server.