agentless Windows 2008 - permission - SPN

Everything about Control-M Server installation or setup.
Post Reply
User avatar
spassvogel47
Nouveau
Nouveau
Posts: 4
Joined: 22 Feb 2011 12:00

agentless Windows 2008 - permission - SPN

Post by spassvogel47 » 13 Feb 2012 1:04

Hello,

we will use the agentless function from control-m for our windows systems. But the delegate permission for the network access in a windows 2008 domain is more complicated. Have anybody create for this a SPN (service principal name) and have information for me (protocol and port)

Its written in the white paper "BMC Control-M Agentless
Tips and Tricks", that:
"When the remote host is configured for WMI communication mode, such network resources can be accessed
when the job owner is a domain user and the DELEGATE impersonation level is granted to the user and to any
computer included in the chain of calls.
• This authorization is granted on the domain controller server using the “Active directory Users and Computers”
interface.
"
But this information is not to use in the windows 2008 domain. You need a SPN.

The second permission question is: Have anybody experience whit lower acces as the local administration access for the service user becaus for us is the permission to high.

many thanks
-----------------------------------------------------------------------------------------

Control-M Server: Applikation: 7.0.00.200 | OS: RedHat Enterprise 6.2 (OS-Cluster)

Control-M Agent Server: Agent: 7.0.00.200 | OS: Windows 2008 R2 64 bit Std. E

domain level: 2008
domain forest: 2008

jenna

pc hacks

Post by jenna » 12 Jun 2012 9:22

Software tips provide us with software, giveaway, windows, downloads, internet, free tips, tricks, phone, android and more. These software languages provide us many fundamentals and concepts.

pc hacks
pc tricks
computer tricks

Post Reply