Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

NT Domain-Based Authentication

0 views
Skip to first unread message

Mona Wells

unread,
Oct 2, 2001, 8:59:29 AM10/2/01
to
How do you get NT Domain-Based Authentication to work for my users?

The NT Service account is a domain admin and a local admin with act as
the operating system rights. When I am trying to assign permissions,
and enter "*" in the input box, I cannot see any domain groups or
accounts.

The global security account is a local admin and a domain account.

WAS 3.5.3
NT 4.0 fixpk 6
DB2 6.4

Thanks,
Mona Wells

Arto Basmadjian

unread,
Oct 2, 2001, 10:43:07 AM10/2/01
to
Mona;

As far as I know, the service must be started with the ' log on as system
account'. This will allow you to assign permissions they way you described.

Arto

"Mona Wells" <mona....@phil.frb.org> wrote in message
news:3BB9BA31...@phil.frb.org...

Mona Wells

unread,
Oct 15, 2001, 4:57:53 PM10/15/01
to Arto Basmadjian
The IBM answer is that I must be able to see my Primary Domain
Controller. WAS validates using PDC, not BDC.

Thanks,
Mona

uwe

unread,
Oct 17, 2001, 6:27:19 AM10/17/01
to
Mona Wells <mona....@phil.frb.org> wrote in message news:<3BB9BA31...@phil.frb.org>...


Hi Mona,

the account which is used to start the WAS Service must have the following
rights:
1. logon as service
2. act as part of the operating system

If this is true, you will see all the groups of your nt-domain.
You can use both local nt-groups and nt-domain groups, but keep in mind,
that local groups should only contain local accounts.

so long
Uwe Albert

0 new messages