I cannot add Windows users or Windows user groups to the FactoryTalk Directory

If, when adding
Windows
users or
Windows
user groups to the
FactoryTalk Directory
, you receive errors regarding
Windows
domain controller not being found or notice a delay in communication between the domain controller and
FactoryTalk Directory
, do the following:
  1. On the
    Windows
    domain controller (
    Windows
    2008 server) computer, check the
    Windows
    Exceptions list to ensure the Active Directory Domain Services and the DNS Service exceptions are selected.
    1. From the
      Windows
      Start menu, select
      Start > Settings > Control Panel
      .
    2. In the
      Control Panel
      window, double-click
      Security Center
      , and then select
      Windows
      Firewall
      .
    3. In the
      Windows
      Firewall
      dialog box, select the
      Exceptions
      tab.
    4. On the
      Exceptions
      tab, under
      Programs and Services
      , make sure the
      Active Directory Domain Services
      and the
      DNS Service
      exceptions are selected. If they are not, select the check boxes next to these exceptions.
  2. If the Active Directory Domain Services and the DNS Service exceptions are not listed in the Programs and Services list on the Exceptions tab, you must manually add the TCP 445 port, the 53 UDP port, and the Kerberos Key Distribution Center program to the exceptions list.
    1. To add the TCP 445 and 53 UDP ports:
      • On the
        Exceptions
        tab, select
        Add Port
        .
      • In the
        Add a Port
        dialog box, make sure the
        TCP
        radio button is selected, and then in the Port number field, type
        445
        .
      • Select
        OK
        .
      • Select
        Add Port
        again to add 53 UDP port.
      • In the
        Add a Port
        dialog box, select the
        UDP
        radio button, and then in the Port number field, type
        53
        .
      • Select
        OK
        .
    2. To add the Kerberos key Distribution Center program:
      • On the
        Exceptions
        tab, select
        Add Program
        .
      • In the
        Add a Program
        dialog box, select
        Browse
        , and navigate to C:\
        Windows
        \System32\, select
        lsass.exe
        , and then select
        Open
        .
  3. Select
    OK
    .
Provide Feedback
Have questions or feedback about this documentation? Please submit your feedback here.
Normal