Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win

x
?
Solved

How prevent AD account from logging on but allow ldap query of AD

Posted on 2014-02-03
2
Medium Priority
?
512 Views
Last Modified: 2014-02-03
We're creating a role account to be used by a 3rd party system on our network that needs to be able to query AD but we'd like to prevent anyone from using that role account to actually log in to AD.  Is that possible?

If so, how?

Our AD domain functional level is 2003, but we have a mix of Server 2008 and Server 2003 DC's.  We're trying to get to a place where we can retire our Server 2003 DC but we're not there yet.

Thanks!
0
Comment
Question by:RhoSysAdmin
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 38

Accepted Solution

by:
Mahesh earned 1000 total points
ID: 39830177
Just go to user ad properties, navigate to accounts tab \ log on to and select the following computer and click OK.
Do not add any computer there, or add any disabled computer account there
Now user will able to make LDAP query but could not be logon to any computers in domain

Mahesh
0
 

Author Closing Comment

by:RhoSysAdmin
ID: 39830993
Perfectly simple solution.
0

Featured Post

Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A hard and fast method for reducing Active Directory Administrators members.
It’s time for spooky stories and consuming way too much sugar, including the many treats we’ve whipped for you in the world of tech. Check it out!
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…
Suggested Courses

604 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question