This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

System Property Check: The logged on user must be able to connect to the domain controller in Active Directory - Failed

I'm attempting to install the Sophos Enterprise Management Server and Sophos Management Console on a domain joined Windows 2016 Standard system and am failing the precheck with the error:

System Property Check: The logged on user must be able to connect to the domain controller in Active Directory - Failed

Our member servers as well as domain controllers are hardened based on various industry standards (CIS, MSFT, STIG, etc) 

I'm confused how this check is failing when I'm logged on successfully using the same account I'm installing the software. 

Could it be a bug, or perhaps use of an antiquated ADSI call? 

Could you please provide what Windows Security Settings might need to be updated to allow this to properly continue with the installation? 

 

A domain admin account can install, however we DO NOT want to be using DA accounts to install software. 

 

Thank you



This thread was automatically locked due to age.
Parents
  • I solved it. 

     

    The setting Network Access: Restrict clients allowed to make remote calls to SAM was set too restrictive on the Domain Controllers. The user account performing the installation must be permitted via this value. 

     

    This is available via GUI on Server 2016 (RTM) otherwise it requires a MSFT KB patch

Reply
  • I solved it. 

     

    The setting Network Access: Restrict clients allowed to make remote calls to SAM was set too restrictive on the Domain Controllers. The user account performing the installation must be permitted via this value. 

     

    This is available via GUI on Server 2016 (RTM) otherwise it requires a MSFT KB patch

Children
No Data