Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • The user account has been deleted.
  • The collection credentials do not have sufficient permissions to access Active Directory.
  • A one-way trust exists between the domain of the collection credentials and the domain of the Windows account.
  • The account is a well-known group, such as Everyone or Terminal Server User, whose membership is hidden by Active Directory and therefore cannot be collected.
Tip

You can use a pass-through account to successfully collect Windows account information when encountering one-way trusted domains. A pass-through account is an account that has the same name and password as the account specified for gathering group membership information. A pass-through account does not require elevated Windows privileges in the trusted domain. For more information, search for "pass-through account" on the Microsoft Help and Support Web site (support.microsoft.com).

...