Solved

HP SiteScope to monitor domain controllers services

Posted on 2010-09-20
4
1,695 Views
Last Modified: 2012-08-14
I'd like to setup monitoring on a service running on my DC's. Right now we are using SiteScope to monitor our servers and their services. This is working fine on member servers where the domain user account is a member of a group has local admin rights on our member servers.

This group is also a member of Builtin "Performance Monitors users".

Its a 2003 functional level domain running all 2003 Servers.

My question is how do I give this user account permissions to monitor the service on the DC's without giving the account full domain admin rights (not an option).
0
Comment
Question by:Farang
  • 3
4 Comments
 
LVL 63

Expert Comment

by:SysExpert
ID: 33720838
To just monitor, you might not need admin rights.

Also consider SNMP service to monitor, or even monitor the event logs.

I hope this helps !
0
 

Author Comment

by:Farang
ID: 33720890
I'm stuck using the infrastructure the corporation has in place, AKA site scope.

I'm looking a GPO right now "log on as a service". Perhaps adding it to that permission? I'm working on setting up lab for testing right now.
0
 

Author Comment

by:Farang
ID: 33720977
And this GPO I'm not finding out much about.

gpo profile system performance
0
 

Accepted Solution

by:
Farang earned 0 total points
ID: 33721265
Adding the service account under local GPO (will be implemented in Domain Controllers - AD GPO) to "Profile System Performance" AND "Profile Single Process" worked. The agent was then able to monitor the EXE for the service running. Stopping the service generated the appropriate alerts.
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
This article describes my battle tested process for setting up delegation. I use this process anywhere that I need to setup delegation. In the article I will show how it applies to Active Directory
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

831 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question