The A2E Service Account credentials are being tossed out of the Add2Exchange Service and A2ESQLServer Services every once in a while and it is necessary to manually retype the password and start the service for it to work again.
The idea that the “allow service to log on locally” keeps popping up suggested that there might be a domain policy that was blowing away the local policy setting.
If that’s the case, It might not even be that the password was lost, but that the domain policy was prohibiting the local service from running and masking the problem with a misleading error.
Usually adding the A2E Service Account to the local administrator of the box and the built in administrators grants the account this right but but if a domain or local policy is created, it takes precedent over any local policy and the account must be included manually. Usually the domain administrator account has that privilege but the A2E Service account is not part of that group.
In our analysis, there WAS a domain policy identifying one specific ID for the “log on as a service” right. We removed that domain policy as it was put in place for a different piece of “eval” software. We ran a gp update, stopped and started the SQL service. I even rebooted the server. Everything seems to be staying in place.