Quantcast
Channel: Symantec Connect - Products - Ideas
Viewing all articles
Browse latest Browse all 1891

Domain Admins Membership Necessary to See Everything In SEPM Console

$
0
0

By working Case #06146269 with Symantec Support, I have come to the understanding that even if a user is given the highest administrative role in SEPM and configuring him to authenticate via Active Directory, he can't see anything but his own machine in the console.  I was told it was necessary for him to be a Domain Admin for this configuration to function as expected (ie - he can see and manage all machines).  I was also told that using SEPM Authentication, that he could log in and see all the endpoints.  This has proven not to be the case.  My idea, since the technical support folks don't see this as a bug, is to utilize the principle of least privilege and have an administrative user in SEPM be able to manage all the resources in there without being a domain admin.  

 

Thanks, 
John 


Viewing all articles
Browse latest Browse all 1891

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>