---
title: "Setting Microsoft Server Credentials"
canonical: "https://docs.infoblox.com/space/BloxOneDDI/186335767/Setting%20Microsoft%20Server%20Credentials"
format: markdown
---
> ⚠️ This feature is deprecated and will be removed in future. While the feature is being deprecated, it will continue to provide read-only access to Microsoft Services. For information on integration with Microsoft Active Directory, DNS, DHCP, and WEC, see *[Microsoft Servers](https://infoblox-docs.atlassian.net/wiki/spaces/UniversalAssetInsights/pages/1710162758)*.

To enable Universal DDI   to synchronize data with a Microsoft server, do the following on the server:

1. Create a user account for Universal DDI  .
2. Grant the user account the necessary permissions.

You can add a user account either to the Administrators Group or to specific groups; in the latter case, you must explicitly grant only the permissions necessary to access the server’s DNS services. The sections below provide general instructions on each method:

## Adding a User Account to the Administrators Group

Adding a user account of Universal DDI   to the Administrators Group provides total control over the Active Directory domain. Do one of the following:

- If the managed Microsoft server is a standalone server or a member server in a domain, open **Computer** **Management**, click **Groups**, and add the user account to the Administrators Group.
- If the managed Microsoft server is a domain controller, open **Active** **Directory** **Users** **and** **Computers**, select the domain name, click **Builtin**, and add the user account to the Administrators Group.