Create and Deploy a Group Managed Service Account (gMSA)

45 minutes
  • 5 Learning Objectives

About this Hands-on Lab

In this hands-on lab, you will learn how to create and deploy a group Managed Service Account.

Learning Objectives

Successfully complete this lab by achieving the following learning objectives:

Configure the Environment

Log in to both VMs and then join the dev-vm to

Configure the KDS Root Key

Next, we need to configure our KDS root key.

Helpful Hint: Keep in mind that you have to set it back 10 hours or it won’t take effect when you need it to.

Create a Global Group

Create a global group named SandyGroup and add both servers into this group.

Create a New gMSA

We are ready to create the group Managed Service Account. In this objective, create a gMSA and include SandyGroup as the principal allowed to retrieve the managed password.

Test the gMSA

Finally, we will test the gMSA by creating a task in the scheduler that opens Notepad.exe using the gMSA instead of standard computer privileges.

Additional Resources

Welcome to Fiji! Our company, Sand, Sun, and Oddly Networking, Inc., is a global chain of luxury hotels that specializes in tropical locations. Concerned about high availability, the company would like to add additional security features through the introduction of a group Managed Service Account. In this hands-on lab, you will learn the steps needed to create and deploy a group Managed Service Account.

If you get stuck, feel free to check out the lab objectives or the solution video. Good luck!

WARNING: Be Prepared for UI Changes

Given the fluid nature of Microsoft's cloud tools, students may experience user interface (UI) changes that were made following the development of this hands-on lab that do not match up with the lab instructions. When any such changes are brought to our attention, we will attempt to update the content accordingly. However, if changes occur, students will have to adapt to the changes and work through them in the hands-on labs as needed.

What are Hands-on Labs

Hands-on Labs are real environments created by industry experts to help you learn. These environments help you gain knowledge and experience, practice without compromising your system, test without risk, destroy without fear, and let you learn from your mistakes. Hands-on Labs: practice your skills before delivering in the real world.

Sign In
Welcome Back!

Psst…this one if you’ve been moved to ACG!

Get Started
Who’s going to be learning?