Hello,
I'm working on a project in which the client needs to manage thousands (25K to be exact) Windows Domain Service Accounts.
These service accounts are like any other AD domain account, except that they have been configured as the "Run As" account on some services and/or scheduled tasks on windows member servers... 17K member servers to be exact.
The client needs to be able to manage those accounts in pam and automate the password rotation across all windows member servers on which those accounts are configured to run as a service.
According to the
3.2.4 documentation Windows Proxy is one of the "
subset of out-of-the-box target applications offers the Account Discovery feature."
see attachment for screenshots of setup
- I've set up the windows proxy device (which is also the target device on which the service is running as the 'svc acct')
- I've Created the Windows Proxy Application, on that Proxy device, set the account type to Active Directory [Lookup DC against DNS], provided the domain name and selected the proxy device as the proxy to use;
- I on-boarded the domain Account linked to the Windows Proxy application and synchronized / verified the account... i also force-changed the password a couple of times.
The issue i'm having is when setting up the discovery profile using the Windows Proxy Account / Server just configured. The option / server is not listed in the available servers list.
I've also switched the Windows Proxy Application Account type from Domain to Local and Back, but still not seeing the server in the discovery profile creation dialogue.
What am i missing?
Thanks in advance.
------------------------------
Services Architect
HCL Technologies Ltd
------------------------------