Microsoft Dynamics CRM must be installed by an account with sufficient privileges. The easiest approach is for the installation user (perhaps CRM Admin) to be a member of the Domain Admins group, which is defined in Active Directory Users and Computers.
The best practice is to create a new domain account for the installation of Microsoft Dynamics CRM, instead of using the built-in Administrator account.
In some organizations, security controls prevent Domain Admin privileges from be granted to the installation user account and used by the installer. In that case, Microsoft Dynamics CRM can be installed by an account with a minimum amount of privileges which are:
1. Ability to create objects within Active Directory OUs that is the target parent OU for installing Microsoft CRM
2. SQL Server Administrator privilege
3. IIS Server local Administrator privilege
4. Local Administrator on the computer where Microsoft CRM is to be installed.