
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎07-19-2018 09:34 PM
HI. We are currently using an account with FULL domain admin access to perform the scan. What is the recommended account settings for this account? I.E. can we use an account with lower than FULL Domain access for the scanning.
Thanks
Dave
Thanks
Dave
Labels:
- Labels:
-
General Discussion
2 REPLIES 2
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎07-20-2018 09:07 AM
The poster above is correct. Just to add on to his response, in cases where a credential with local admin rights on the target computer would be deemed a security risk, you could use the LsPush scanning agent instead, which doesn't require administrative rights to run. Full instructions and use cases for LsPush can be found in this article.

Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎07-19-2018 11:23 PM
The scanning account only needs local machine admin rights and AD read rights.
https://www.lansweeper.com/knowledgebase/domain-scanning-requirements/
Credentials
You must provide Lansweeper with a username/password combination that has administrative privileges on the client machine and, for scanning Active Directory information, read-only access to Active Directory.
-Kris
https://www.lansweeper.com/knowledgebase/domain-scanning-requirements/
Credentials
You must provide Lansweeper with a username/password combination that has administrative privileges on the client machine and, for scanning Active Directory information, read-only access to Active Directory.
-Kris
