Setting to enable/disable local admin lookup functionality in Screen Connect Client/Agent

Avatar
  • Pending Review

The local admin lookup functionality will trigger a lookup to the domain and domain trusts of the environment the screen connect client/agent is installed in (Microsoft Windows), generating an excessive amount of LDAP UDP 389 lookups to all domain controllers within the domain trusts. 
This behavior is rarely seen as most environments do not have any or large amounts of external domain trusts. The traffic is also not directly seen as coming from ScreenConnectClient.exe as it is using SAM (security account manager) and lsass.exe, which in turn will query domain trusts.