Hi , is there a way to get the agent installed or a workaround for DCs, we have tried different agent versions and we cannot get the policy to run since it has no local admin account to get it installed.
‎Feb 07, 2023 10:18 AM
Krystel,
We worked with our Directory services team on a smiliar situation--and we just provided them the ndtrack.exe and they placed it in a temp folder on the DC and setup a scheduled task to run once a month (or could do on any schedule you wish) to run the ndtrack with desired options and passing the argument of the beacon to upload the inventory to. Worked like a charm.
‎Feb 07, 2023 05:00 PM
Krystel,
We worked with our Directory services team on a smiliar situation--and we just provided them the ndtrack.exe and they placed it in a temp folder on the DC and setup a scheduled task to run once a month (or could do on any schedule you wish) to run the ndtrack with desired options and passing the argument of the beacon to upload the inventory to. Worked like a charm.
‎Feb 07, 2023 05:00 PM
‎Feb 07, 2023 06:23 PM
Agree with chris. Every DC have domain admin account if local account has been disabled due to security policy.
There must LAPS implementation to retrieve local admin just in case emergency.
‎Feb 07, 2023 11:16 PM - edited ‎Feb 07, 2023 11:17 PM
In my case...it was the directory services team didn't want to install the agent. not that it couldn't be done--they just didn't want to. My implementation was something to make everyone happy :D.
‎Feb 08, 2023 07:30 AM
‎Feb 08, 2023 11:04 AM