• |
Supported on: Windows Server 2012, Windows Server 2012 R2, Windows Server 2016, and Windows Server 2019 |
• |
Required permissions: When monitored locally and remotely, only domain user privilege is required. When monitored remotely, the target server must have WMI remote access enabled and the user must be a member of the Distributed COM Users group. |
Reconcile the DNS SRV entries with the IP address reported by the network adapter (or by DHCP, if applicable). The SRV entries appear under _ldap._tcp.dc._msdcs.<zone-name> in the DNS Management Console.
• |
Supported on: Windows Server 2012, Windows Server 2012 R2, Windows Server 2016, and Windows Server 2019 |
• |
Required permissions: When monitored locally and remotely, only domain user privilege is required. When monitored remotely, the target server must have WMI remote access enabled and the user must be a member of the Distributed COM Users group. |
Reconcile the DNS SRV entries with the IP address reported by the network adapter (or by DHCP, if applicable). The SRV entries appear under _ldap._tcp.dc._msdcs.<zone-name> in the DNS Management Console.
• |
Category: Windows Services |
• |
Name: Kerberos Key Distribution Center Service |
• |
Supported on: Windows Server 2012, Windows Server 2012 R2, Windows Server 2016, and Windows Server 2019 |
• |
Required permissions: When monitored locally, only domain user privilege is required. When monitored remotely, domain administrator privilege is required. |
The Directory Analyzer agent periodically checks to ensure that the KDC service is running.
Use the Services MCC snap-in or another SCP application to restart the KDC service.
• |
Category: Performance Counters |
• |
Name: LSASS % processor time |
• |
Supported on: Windows Server 2012, Windows Server 2012 R2, Windows Server 2016, and Windows Server 2019 |
• |
Required permissions: When monitored locally and remotely, only domain user privilege is required and the user must be a part of the Performance Logs user group. |
The Directory Analyzer agent monitors the Process(lsass)\% Processor Time performance counter on the domain controller for the LSASS service. If the value of the performance counter goes above the configured threshold for a period exceeding the configured duration, the agent will set this alert condition.
Please refer to the documents listed below for resolutions when Lsass.exe causes high CPU usage.
© 2021 Quest Software Inc. ALL RIGHTS RESERVED. Feedback Terms of Use Privacy