> ## Documentation Index
> Fetch the complete documentation index at: https://specterops-feat-poc-api-playground.mintlify.site/llms.txt
> Use this file to discover all available pages before exploring further.

# SharpHound Enterprise Tenant Configuration

<img noZoom src="https://mintcdn.com/specterops-feat-poc-api-playground/5XJ7p5p7xL9ZwxE2/assets/enterprise-edition-pill-tag.svg?fit=max&auto=format&n=5XJ7p5p7xL9ZwxE2&q=85&s=5935d09eed22feb3daa90beb0a34b571" alt="Applies to BloodHound Enterprise only" width="225" height="45" data-path="assets/enterprise-edition-pill-tag.svg" />

## Configuration location

1. Tenant configuration of SharpHound Enterprise occurs within the Config -> Administration -> Manage clients view.

<Frame>
  <img src="https://mintcdn.com/specterops-feat-poc-api-playground/D7OBo3Pm6H8NOqVG/assets/image-98.png?fit=max&auto=format&n=D7OBo3Pm6H8NOqVG&q=85&s=1b24cb8e40dbdccb3bcee7a295e6c81d" alt="" width="506" height="474" data-path="assets/image-98.png" />
</Frame>

2. Click on the hamburger menu on the right-hand side of any SharpHound collector to see the options available.

<Frame>
  <img src="https://mintcdn.com/specterops-feat-poc-api-playground/D7OBo3Pm6H8NOqVG/assets/image-99.png?fit=max&auto=format&n=D7OBo3Pm6H8NOqVG&q=85&s=050cde42593fa93dbce9e43070a86f5f" alt="" width="540" height="642" data-path="assets/image-99.png" />
</Frame>

## Configure Options

### On Demand Scan

Kick a collection off immediately. See [Run an On Demand Scan](/collect-data/enterprise-collection/on-demand-scan)

### Edit Client

Opens the client modification dialog, providing multiple options:

<Frame>
  <img src="https://mintcdn.com/specterops-feat-poc-api-playground/5XJ7p5p7xL9ZwxE2/assets/image-100.png?fit=max&auto=format&n=5XJ7p5p7xL9ZwxE2&q=85&s=d8e709d6d40de9413f093d3288a7cc36" alt="" width="1218" height="890" data-path="assets/image-100.png" />
</Frame>

| **Option**                            | **Description**                                                                                                                                                                                                                                                                    |
| ------------------------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Client Name                           | An identifiable name for the collector. Many customers utilize the name of the domain it collects from or the system it runs on.                                                                                                                                                   |
| Collection Schedule                   | Click the + sign to add a new schedule or the - sign to delete a schedule.                                                                                                                                                                                                         |
| Advanced Options -> Domain Controller | By default, SharpHound automatically selects a Domain Controller for LDAP queries. Specifying a Domain Controller hostname or FQDN here will define the default value utilized on all scheduled collections.<br /><br />We recommend not configuring a Domain Controller manually. |

## Collection Scheduling

Collectors support multiple schedules, however, can only run a single job at any time.

## Scanning

Both the On Demand Scan option and the schedule window provide the same options for scanning.

| **Option**                                                               | **Description**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| ------------------------------------------------------------------------ | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Data (Required)                                                          | Multi-select option for the different types of collection available. See [SharpHound Data Collection and Permissions](/collect-data/permissions) for details on the data collected and permissions necessary for each.                                                                                                                                                                                                                                                                          |
| Domain controller                                                        | By default, SharpHound automatically selects a Domain Controller for LDAP queries. Specifying a Domain Controller hostname or FQDN here will define the default value utilized on this schedule.<br /><br />If not set, SharpHound will utilize the value set in the client configuration.<br /><br />We recommend not configuring a Domain Controller manually.                                                                                                                                |
| Target Local Group and/or User Session Collection by Organizational Unit | Define one or more OUs within a domain to only collect Local Group and Session data from computers contained within the specified OUs and their descendants.<br /><br />If left empty, *SharpHound will collect from all OUs.*<br /><br />If defined, the schedule or On Demand Scan will not collect AD structure data. A dedicated schedule or On Demand Scan must therefore be created for AD structure collection.<br /><br />*Note: Not supported with multi-domain collections.*          |
| Scope Collection to Multiple Domains                                     | Utilize trust relationships in your environment to collect data from multiple domains.<br /><br />If left empty, SharpHound will collect from the domain to which the Service Account belongs.<br /><br />SharpHound supports two options:<br /><br />\* Define a specific list of domains from which to collect data.<br />\* Collect data from all domains within the forest that the SharpHound service account belongs.<br /><br />*Note: Multi-domain collections cannot be scoped by OU.* |
