marz
5,675 Views

Suggest the Active Directory Bind Account be a user that can authenticate only (Bind) to AD, not a domain admin or other user with elevated privileges.

Administrator Name can be one of three forms listed below.

Authentication Service:  Active Directory

     Administrator Name: <domain>\<bind_account>   --or--   <bind_account>@<domain>   --or--   <bind_account_distinguishedname>

     Password: ********

     Base Distinguished Name:  DC=<domain>,DC=<domain>,DC=<company>,DC=<com>

Servers

  At least one AD server must be entered here.  IP Address or FQDN

Test Authentication

User Name:  <user_name>

Password:  ********

The above tests should pass with a user_name of an AD account.