Page History
...
- The user account has been deleted.
- The collection credentials do not have sufficient permissions to access Active Directory.
- A one-way trust exists between the domain of the collection credentials and the domain of the Windows account.
- The account is a well-known group, such as Everyone or Terminal Server User, whose membership is hidden by Active Directory and therefore cannot be collected.
Tip |
---|
You can use a pass-through account to successfully collect Windows account information when encountering one-way trusted domains. A pass-through account is an account that has the same name and password as the account specified for gathering group membership information. A pass-through account does not require elevated Windows privileges in the trusted domain. For more information, search for "pass-through account" on the Microsoft Help and Support Web site (support.microsoft.com). |
...