"_New-ADServiceAccount : Key does not exist_"
, try again in 10 hours. This allows all Domain Controllers to converge AD replication of the KDS root key.True
.
$
at the end of it. Enter the account in this format when adding it to the Domain Admins group.Sharphound
in the C:\Support
directory.
Results
in the C:\Support\Sharphound
directory.
C:\Support\Sharphound
directory on the server where the scheduled task runs (the Sharphound executable should be zipped in a password protected zip file so that it doesn’t get prevented by Microsoft Defender during the file transfer).
The PowerShell script contains:
C:\Support\Sharphound\Results
directory that are older than 2 monthsSharphound_Collection.ps1
to the C:\Support\Sharphound
directory.
SharpHound_Collection.ps1
PowerShell script should resemble:
powershell.exe
-ExecutionPolicy ByPass -File C:\Support\SharpHound.ps1