What permissions do I need to install subsequent Active Directory Connector servers into my Active Directory forest?
Because the schema has already been updated, you need the following Active Directory permissions to install additional connectors: • Domain Administrator • Member of the local Administrators group on the target ADC server The ADC setup program has a hard-coded prerequisite where you must belong to the Domain Admins group in Active Directory. You must belong to this group even if you only want to install the ADC Management snap-ins on a computer. When installing the Active Directory Connector service, I need to enter a service account. Why is this required when Exchange services start as LocalSystem? What permissions will the service account require? The ADC requires a service account because a subset of the ADC technology is shipped with the Windows Server operating system. Exchange has features to prepare the Active Directory forest and domains for installation of the server (with the use of ForestPrep and DomainPrep). Part of this preparation involves setting permissions for LocalSys