This document provides an overview of Active Directory design and security concepts in Windows Server 2008. It discusses organizing users and computers into organizational units and how to delegate control to other users. The document also covers forests, trees, domains and the components of an Active Directory site, including domain controllers and replication. It provides information on permissions, access control lists, and inheritance as they relate to Active Directory security.