> ## Documentation Index
> Fetch the complete documentation index at: https://www.docusnap.com/docs/llms.txt
> Use this file to discover all available pages before exploring further.

# Directory and Network Services

> Active Directory, DNS, DHCP and DFS – which types these scan modules create and how their detail pages are structured.

Four scan modules capture the services that hold a network together. Each
creates the service as its own asset — not as a section on the server it
runs on.

## Active Directory

The scan creates three types: the directory itself, plus users and groups as
independent assets.

| Type | Group | Areas |
| - | - | - |
| *Active Directory* | Resources | OU, Users, Groups, Computers, Contacts, Foreign Security Principals (FSP) |
| *Active Directory* | Infrastructure | Sites, Domain Controllers, Inter-Site Protocols, Networks, Operations Master Roles, Managed DHCP Servers |
| *Active Directory User* | Properties | General, Phone, Email, Address, Organization, Account, Member Of, Terminal Server |
| *Active Directory Group* | Basic Information | Member Of, Members, Email |

<Note>
  A directory account and its counterpart in Entra ID remain two separate
  assets. A dedicated type records that both mean the same person — see
  [Cloud and Identity](/docs/en/assets/cloud-identity).
</Note>

## DNS

Created by *Windows DNS*. Three groups: Service Configuration (server
overview, recursion behavior, security settings, forwarders, root hints,
zone delegations), Zones (primary and secondary zones), and Statistics.

## DHCP

Created by *Windows DHCP*. Five groups, following the structure of the
service itself: General, IPv4 Settings (network adapters, high
availability, policies, classes, option definitions), IPv4 Scopes, IPv4
Scope Exclusions, and IPv4 Server Statistics.

## DFS

Created by *DFS*, in two types: *DFS Domain* for the domain-based namespace —
with namespaces, DFS servers, folder targets and access rights, plus its own
Replication group (replication groups, memberships, connections, replicated
folders) — and *DFS Standalone* for the stand-alone namespace, without
replication and without participating servers.

<Tip>
  The *Access Rights* area carries the permissions per folder and target. For
  evaluating file-system and share permissions as a whole, the *NTFS Security*
  scan is responsible — see
  [Storage, Backup, Permissions](/docs/en/assets/storage-backup).
</Tip>

## NTFS

The *NTFS Security* type is created by the scan module of the same name, but
carries no view of its own. You evaluate a share's permission structure in
[File System](/docs/en/analysis/file-system).

## Related

Credentials and target details for *Active Directory* are under
[Active Directory](/docs/en/scan/active-directory), for the other modules in the
[Scan Reference](/docs/en/scan/reference). What the databases on these servers
hold is described under [Databases](/docs/en/assets/databases).


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.