Endpoint Protection

 View Only
  • 1.  Endpoint protection 11 service account rights

    Posted Jun 11, 2010 06:39 AM
    I am looking to put endpoint protection 11 clients on 2008 R2 severs. I will create a service account for the clients. what rights should I set for the service account, using group policy ?


  • 2.  RE: Endpoint protection 11 service account rights
    Best Answer

    Posted Jun 11, 2010 07:20 AM

    While individual user accounts can run specific SEP processes when the user is permitted, the client is designed to run under the context of the SYSTEM account. This is allows it to perform any function it needs without being limited by the rights of the logged in user account, When the SYSTEM account permissions are revoked from the file system, registry or network rights, the context of the logged in user account is attempted instead. If the user does not have the rights, the process fails.

    Note: If the Admin account does not see this behavior, i.e. everything appears to run as expected/normally, then comparison of the limited user permissions to the Admin account in respect to SEP registry and file system locations should be accomplished.