Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Terminal Server logon failure

Status
Not open for further replies.

dtrade

IS-IT--Management
Feb 27, 2006
4
DE
Hello .

I have a simple problem , I have a 2003 AD domain structure.
I deployed a terminal server on one of my servers to use it as Application server.

I can make a connection when i use Administrator account ,
but i cannot connect with user account , even i add the user to remote desktop users. it does not work.

it gives a messagebox

"the local policy of this system does not permit you to logon interactively"

a very simple point is missing but i dont know. please help.
 
Have you right click My Computer->Properties->Allow users to connect remotely to this computer->Select Remote Users...-> does the user exist in this list?

If not, click Add and add the user.
 
user is a member of remote users group and remote users
has the rights to make a remote connection to this terminal server.
 
It will be a Group policy setting for the box only allowing Administrators to logon to the box - I cant remember the Policy item off the top of my head.
 
Are you sure you have you set it up properly as an Application server? I seem to vaguely recall having a similar issue on a 2003 box a couple of years ago but realised afterwards its a different setup procedure to Windows 2000 so I still had it in Admin mode, its something along the lines of needing to install it via a wizard, you don't install it from add/remove programs - Windows Components as you do in W2K.

Chris
 
It it's terminal services, then the user will be logging on DIRECTLY to the computer hosting the terminal services. If this is the same as your domain controller, you'll have to edit the default domain controller's group policy and allow users to log on locally.

That's why most administrators don't put terminal services on domain controllers.

Start, Help. You'll be surprised what's there. A+/MCP/MCSE/MCDBA
 
it is not a domain controller. thanks
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top