Configure Connection
Microsoft Active Directory guide
Assign the managed service account to the NIM Windows service so NIM can manage the Active Directory objects you have delegated.
Assign the service accountDirect link to Assign the service account
Open the Windows Run dialog, enter services.msc, and select OK.
Find the NIM Service and double-click it.
On the Log On tab, select This account, then select Browse.
Select Locations, then choose Entire Directory.
Enter the name of the managed service account you created, then select OK.
Clear the Password and Confirm password fields, then select OK.
After saving the service properties, restart the NIM service so that it begins running under the managed service account.
Verify the service accountDirect link to Verify the service account
After restarting the NIM Service, perform a safe collection or a limited test change in an organizational unit where the account has delegated rights. If the operation returns Access denied, confirm the service account assignment and review the affected object's Effective Access in Active Directory Users and Computers.