Can CA PAM use a service account to authenticate to an Active directory?
yes, any account with atleast Read-Only privilege, to scan the directory.
If that's the case, when i am adding the target account the Account Name should be the service account name and the Password would be the password of the service account right? For the Distinguished Name, can you give an example using a service account?
yes, the Account name should be the Service Account name and the Distinguished Name will be 1 of 2 options:
1) <serviceAcct>@domain.com
2) CN=<serviceAcct>,O=Domain,OU=com,...
try the first one, it usually works