Navis recommends that you do not use the Local System account to run the N4 service. The Local System account has unrestricted access to the local system. Therefore, if there were a vulnerability or a cyber attack on the service that it is running, then the attack can potentially use that account to bring down the host. The N4 services do not require the full privileges of the Local System account in order to run.
If you are running N4 on Windows, configure the N4 service to log on with a non-administrator user account, such as:
the Network Service account (a password is not required for this account)
a domain user account
a managed service account
This user account needs to have the following:
ownership of the C:\Program Folder\Navis and C:\ProgramData\Navis folders
read/write permission on the network shared folder
To set the service to run with a domain user:
From the Windows task bar on the host, open the Server Manager .
In the Server Manager, under Configuration in the left frame, select Services. The installed services display in the right frame.
In the list of installed services, find the Navis service, and right click. From the menu that appears, select Properties.
In the Log On tab, select This account: and enter a user account name.
Enter a Password and confirm the password.
Click OK. The Properties dialog closes.
Service names for N4 components |
---|
Navis N4 Center Node |
Navis N4 Cluster Node |
Navis XPS |
Navis XPS Bridge Daemon |
Navis ECN4 Daemon |
Navis ECN4Web |
Navis N4 Billing |
Navis LogCollector Tool |