Network Management

SolarWinds Platform polling is locking me out of Active Directory

How to resolve Active Directory account lock out issue when working in SolarWinds Platform Products. SolarWinds Platform locking out domain account. AD accounts are being locked out.

First published date

11/1/2018 5:09 PM

Last published date

11/26/2025 7:42 AM

Overview

If you are being locked out of Active Directory while working in SolarWinds Platform products, the SolarWinds Platform may be repeatedly trying to log in to Active Directory using expired or mistyped credentials. This issue can also occur if you are trying to access the internet through a proxy server for which you use Active Directory authentication.

Product section

Orion Platform

Cause

Credentials are stored in the database. There are several credential libraries where a credential can appear. This outlines the location of all SolarWinds Platform product credentials in the web console.

Resolution

Account lockout due to expired or mistyped credentials can occur in several areas. Check, and where needed, correct the following credential issues:

  • SolarWinds Platform Windows Credentials for WMI (use Domain\User format)
    These credentials may also be used for SAM with "Inherit Credential From Node"
    • Log in to the Web Console
    • Settings > All Settings
    • Manage Windows Credentials

 

  • SolarWinds Platform Scheduled Tasks
    • Common tasks that can be scheduled in Orion are Unmanaging Elements. These tasks appear in the Task Scheduler Library on the Windows Server. Check the credentials used for these jobs.

 

  • SolarWinds Platform Discovery Jobs
    • Settings > All Settings > Discovery Central.
    • Check the different jobs if they have specified the credentials for WMI Polling.

 

  • SAM
    • Log in to the Web Console
    • Settings > All Settings
    • SAM Settings
    • Credentials Library

 

  • SolarWinds Platform High Availability DNS 
    • Settings > My Deployment 
    • Select High Availability pool > Edit Pool 
    • Go to 2nd page of DNS settings, update the DNS entry credentials

 

  • NCM
    • Check Scheduled Tasks in Windows Server 2003 or Task Scheduler in Windows Server 2008/2012/2016 for any jobs running under your credentials.
    • The jobs are set in Schedule > Display Edit / Jobs in NCM.
    • You can also checked in Settings -> All Setings -> NCM Settings -> Manage Connection Profiles for the NCM CLI Credentials

 

  • IPAM
    • Log in to the Web Console
    • Settings > All Settings
    • IPAM Settings
    • Manage DHCP Servers
    • Edit the Servers and verify the credentials

 

  •  VNQM
    • Log in to the Web Console
    • Settings > All Settings
    • VoIP & Network Quality (VNQM) Settings
    • Remove nodes from VoIP and Network Quality Manager
    • Check and verify the CLI credential configured on the IP SLA devices

 

    • VIM / IVIM (vCenter Polling)
      • Log in to the Web Console
      • Settings > All Settings
      • Virtualization Settings
      • VMware Credentials Library

     

    • UDT
      • Log in to the Web Console
      • Settings > All Settings
      • UDT Settings
      • Manage Active Directory Domain Controller
      • Edit the Servers and verify the credentials

     

    • SolarWinds Platform Services in Service Manager
      • If using Windows Credentials instead of LocalSystem account then ensure the account is exempt from Password Policy to change the password every xx days.
      • This can be verified via Run > Services.msc and checking the "Log On As" column.

     

    • Alerts with Actions
      • Log in to the Web Console
      • Settings > All Settings
      • Manage Alerts
      • Action Manager
      • Group By Action Type
      • Check Actions such as "Execute an External Program" for credentials

     

    • Mapped network drives
      • Remote Desktop to the Solarwinds Server
      • Open an Administrative Command Prompt
      • Run the command: 
        net use
      • Check the mapped shares for the credentials
      • The Credential Manager can also be checked on the server or the command: 
        cmdkey /list
    • Remote desktop (RDP) sessions
      • Check the AD credentials that are saved for remote desktop sessions.
      • RDP session timeouts - If the RDP sessions do not have a session timeout set for the SolarWinds Orion server, the AD account can be locked out based on the enforced policy.