Documentation for Intellect 4.11.0-4.11.3. Documentation for other versions of Intellect is available too.

Previous page Disabling Intellect as a Service startup  Updating Intellect installed as a Service Next page


In order to run Intellect that was installed as a Service using the users from an Active Directory (AD) domain without adding them to the local IntellectUsers group, it is necessary to specify the user group name in the IntellectUserGroup key of the Windows registry (for details, see Registry keys reference guide. For details on working with the registry, see Working with Windows OS registry).

This configuration may be useful for arranging the access to the Intellect as a Sevice interfaces for a large number of users. In this case, it will not be necessary to register all the required users in the local IntellectUsers group on each Server.

It is also necessary for this user group to have access and permission to inherit the subdirectories rights to the following directories:

  1. Root directory on disk;
  2. Windows registry branches:
    • For (x32): HKEY_LOCAL_MACHINE\SOFTWARE\ITV\
    • For (x64): HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\ITV\

After you log in to Windows within an AD domain using the AD user account, this setting will allow you to provide the Intellect interface without adding a user to the IntellectUsers group. It does not require any additional user configurations to grant the access rights to the necessary Windows branches, the folder with the installed Intellect, the Video archive folders, or other service folders according to the access rights assigned to the user in Intellect.

Note

Please note that only one user at a time can operate Intellect running as a Service. Log out before logging in with other user's credentials. If a user just locks the display without logout before logging in with new credentials, Intellect interfaces are not available to such new user.

  • No labels