The Windows Active Directory provides central authentication and authorization services for Windows based computers. It also enables Network Administrators to assign policies, deploy software, and apply critical updates to an organization. Active Directory was designed to support hundreds of computers simultaneously.
When a users attempts to log on to a Windows computer that is on a Windows Domain, Windows automatically attempts to verify the user’s password with the Active Directory (which typically resides on a separate central computer).