Submit a ticketCall us

AnnouncementsAre You “Flying Blind?”

When it comes to your complex IT infrastructure, you want to ensure you have a good grasp of what’s going on to avoid any fire drills that result from guesswork. Read our white paper to learn how proactively monitoring your IT environment can help your organization while giving you peace of mind.

Get your free white paper.

Home > Success Center > Server & Application Monitor (SAM) > SAM - Knowledgebase Articles > This account must be an Active Directory account with local administrative privileges

This account must be an Active Directory account with local administrative privileges

Overview

This account must be an Active Directory account with local administrative privileges.

Environment

All SAM versions

Resolution

To verify the user is a member of the local 'Administrators' group, perform the following:
Open a PowerShell session, and type the following commands:
$Recurse = $true
$GroupName = 'Administrators'
Add-Type -AssemblyName System.DirectoryServices.AccountManagement
$ct = [System.DirectoryServices.AccountManagement.ContextType]::Machine
$group = [System.DirectoryServices.AccountManagement.GroupPrincipal]::FindByIdentity($ct,$GroupName)
$LocalAdmin = $group.GetMembers($Recurse) | select @{N='Domain'; E={$.Context.Name}}, samaccountName, @{N='ObjectType'; E={$.StructuralObjectClass}} -Unique
$LocalAdmin = $LocalAdmin | Where-Object {$_.ObjectType -eq "user"}
$LocalAdmin


If service account is not a local administrator, perform the following:

  1. open a Computer Management console on the server where you wish to grant local administrative privileges.
  2. Navigate to System Tools/Local Users and Groups/Groups and double click the Administrators group.
  3. Click the Add button and type in the Active Directory username of the account you which to grant administrative privileges and hit Enter. Instead of an individual user object, you can alternatively add an AD group which contains the user object. (Ensure the location is set to either the domain where the account is located or Entire Directory.)
  4. Click the Apply button and then the OK button.

 

 

Last modified

Tags

Classifications

Public