Jump to content

Recommended Posts

Posted

In the SOLUS3 Deployment Service, when trying to add a new computer you can specify AD credentials. Mine will only accept my actual domain administrator account as far as I can tell. I want to disable my domain admin account and have a different account for admin stuff. The account I am trying to use is a domain admin as I've been using it for everything else adminy for weeks! Anyone got an idea please?

 

Thank you

 

Stuart

Posted (edited)
SQL Server permissions? Can the new DA admin the SQL server hosting the SIMS/solus3 database? This is a guess though - haven't run into the issue here. Edited by pete
  • Thanks 1
Posted
SQL Server permissions? Can the new DA admin the SQL server hosting the SIMS/solus3 database? This is a guess though - haven't run into the issue here.

 

Nope! I can't log in to the SQL Management Studio.

 

What user is the SOLUS3 service running as?

 

System account.

Posted
Are you specifying the domain name (pre-Windows 2000 style) before the username, e.g. domain\sysaccount?

 

Don't need to. It's in the drop down box.

 

SOLUS.png

Posted
I find that I still need to specify the domain ahead of the user, or it fails. You'd notice that with your administrator account too though.

 

Have a look at:

http://www.edugeek.net/forums/mis-systems/120823-solus3-management-console.html

 

Administrator account just works with no domain specified. My admin account still doesn't. I've looked through that thread and have full control over all the places, I'm reluctant to just add "Everyone" to places like it says to..

 

This is not even letting me choose a computer to install it on though, this is at the "Active Directory" bit before that. If I ignore it and go to "Network" and type a computer name in, in that box which asks for credentials I do need to specify the domain before the administrator account, and my admin account doesn't work however I try it.

 

SOLUS.png

Posted

http://www.edugeek.net/forums/security/222505-pingcastle-ad-windows-security-evaluation-tool-9.html#post1905799

 

Might be relevant?

 

The way we have it running (I think) is that we log on to the sims server with an domain user that is a local administrator of the sims server, and then when putting creds into SOLUS for deployment we use an account that has local admin rights to the target machines, but not the servers. This solus push account needs to have read access to the \\simsserver\sims share.

  • Thanks 1
Posted
http://www.edugeek.net/forums/security/222505-pingcastle-ad-windows-security-evaluation-tool-9.html#post1905799

 

Might be relevant?

 

The way we have it running (I think) is that we log on to the sims server with an domain user that is a local administrator of the sims server, and then when putting creds into SOLUS for deployment we use an account that has local admin rights to the target machines, but not the servers. This solus push account needs to have read access to the \\simsserver\sims share.

 

I've added myself to the local admin group, even though strictly speaking I'm in it anyway as I'm a DA, and it's made no difference.

Posted
How about a local admin on the desktop you are deploying to?

 

I'm not at the stage of picking a workstation to deploy on to, just the bit where it lists the computers in Active Directory.

Posted

I have a 'domain user' account which we use for workstation admin. The user name is added to the local workstations 'administrators' group.

when we install the SOLUS agent we specify the domain\username and password.

Has always worked for us as the domain user is only a member of the location admin group.

User gets added to local administrators group via GPO

Posted
I have a 'domain user' account which we use for workstation admin. The user name is added to the local workstations 'administrators' group.

when we install the SOLUS agent we specify the domain\username and password.

Has always worked for us as the domain user is only a member of the location admin group.

User gets added to local administrators group via GPO

 

As stated, this is NOT at the point of installing a SOLUS agent, this is before that.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...