Skip to main content

Windows Domain Admin Account Process

Summary​

The purpose of the monitor set is to identify Domain Controllers that do not have the designated Domain admin account and those where the password for the account has not been updated within the specified password age limit. The UserName and Password age parameters are configured in the system properties and client-level Extra Data Fields (EDFs), allowing for customization and adaptability to specific requirements.

Check the Script's document for more information on EDFs, Script State, and System Properties used in the monitor set.

Dependencies​

EPM - Windows Configuration - Script - Windows - Admin Account - Create/Update

Target​

Domain Controllers belonging to clients that have the 1a. Enable Domain Admin Process EDF marked.

Image

Alert Template​

Name: △ CUSTOM - Execute Script - Windows - Admin Account - Create/Update

The alert template should run the EPM - Windows Configuration - Script - Windows - Admin Account - Create/Update script on the machines detected by the monitor set.

Changelog​

2025-04-10​

  • Initial version of the document