---
title: "Configuring Active Directory with SignUp Vx2 - LAN Accounts"
slug: "configuring-active-directory-with-signup-vx2-lan-accounts"
updated: 2024-03-28T13:46:05Z
published: 2024-03-28T13:46:05Z
canonical: "kb.pharos.com/configuring-active-directory-with-signup-vx2-lan-accounts"
---

> ## Documentation Index
> Fetch the complete documentation index at: https://kb.pharos.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Configuring Active Directory with SignUp Vx2 - LAN Accounts

### Problem:

SignUp is configured with LAN accounts authenticating against Active Directory. Authentication is failing against the Active Directory.

We have set up user rights with the below options.

- *log on as a batch job*
- *log on locally*
- *log on as a service*
- *act as part of the operating system*

Authentication only works if the group policy setting to "Allow users to read Group Policy" check box is ticked. The customer does not want this policy permission enabled. The Signup Service runs under the System account.

---

### Answer:

1. Give the System account the correct Group Policy setting.
2. Run the Signup Service with a Domain Admin account.

## Related

- [Blueprint: Resolving Active Directory Authentication Problems When Using the Standard Authentication Method](/blueprint-resolving-active-directory-authentication-problems-when-using-the-standard-authentication-method.md)
- [Resolving Issues with Active Directory Access in Pharos Blueprint Enterprise](/resolving-issues-with-active-directory-access-in-pharos-blueprint-enterprise.md)
- [Migrating from the NT Logon Plug-in to the Active Directory LDAP Plug-in](/migrating-from-the-nt-logon-plug-in-to-the-active-directory-ldap-plug-in.md)
- [NT Logon Plug-in fails logons on Active Directory](/nt-logon-plug-in-fails-logons-on-active-directory.md)
