Enable Credentials to "Log on as a Service"
Purpose
You possibly received a "Logon failure: the user has not been granted the requested logon type at this computer" or are just genuinely curious about how to allow certain credentials to Log on as a service.
Resolution
Any credentials used in PDQ Deploy & Inventory (to deploy software or run an inventory scan on target computers) must be granted the right to "Log on as a service". PDQ Deploy or PDQ Inventory will automatically attempt to grant this right to the deploy or scan credentials used on target computers.
If granting this right fails then you will need to enable this right either locally (on the target computers) or via Group Policy.
Enable the right locally
To enable on target computers go to the Local Security Policy under Control Panel > System and Security > Administrative Tools(Windows10) or Windows Tools(Windows11) OR simply run the following command from Start > Run or a CMD window: secpol.msc
In the Local Security Policy window go to Security Settings > Local Policies > User Rights Assignment > Log on as a service and add the appropriate credentials to this right.
Verify that this account has not been added to the "Deny log on as a service" policy.
Also check the "Access this computer from the network" right. The account needs to be allowed there too (directly or through group membership), and it must not be listed in the "Deny access to this computer from the network" policy.
Enable the right via Group Policy
To add the account via Group Policy open your Group Policy editor and edit the appropriate Group Policy. Go to Policies > Windows Settings > Security Settings > Log on as a service