Forum Discussion
ShimKwan
Jul 08, 2024Brass Contributor
MDI & gMSA config
Hi, We have followed the MDI Deployment guide from Microsoft: https://learn.microsoft.com/en-us/defender-for-identity/deploy/deploy-defender-identity We have also cross referenced this guide:...
EliOfek
Microsoft
Jul 08, 2024ShimKwan This is by design.
The service should be running as local service.
We only use gmsa for specifc outgoing connections like ldap and samr. (Pottentially using multiple creds).
- ShimKwanJul 08, 2024Brass ContributorHi EliOfek,
Thank you so much for your quick reply - we've been scratching our heads thinking we should see the gMSA account appear in the Service.msc console.
In that case our deployment is running as it should 🙂
Thank you again !
PS. Perhaps one day someone will update the MS site with the expected behavior under the gMSA config page: https://learn.microsoft.com/en-us/defender-for-identity/deploy/create-directory-service-account-gmsa