Rights Delegation


hi there,

please assist, need delegate ome tasks in ad helpdesk team. have delegated shown below , have added them remote desktop users biult-in security gruop. when try remote connect error shown below.

kindly advise how can enable them login without having them other changes ad.

many thanks

by default, administrators , remote desktop users groups given remote logon rights. so, users part of these groups authorized logon remotely server.

now, if have user account not part of administrators or remote desktop users groups , go ahead , add him gpo “allow logon through terminal services”, still not able create successful rdp connection server. reason being adding user gpo authorizes him remote logon server not give him permissions connect rdp-listener.

adding user “remote desktop users” group allows them create successful connection server. adding user remote desktop users group gives them “remote logon” rights machine remote desktop users group part of gpo “allow logon through terminal services”.

refre below link more details:
http://blogs.technet.com/b/askperf/archive/2011/09/09/allow-logon-through-terminal-services-group-policy-and-remote-desktop-users-group.aspx

http://support.microsoft.com/kb/289289

http://social.technet.microsoft.com/forums/en/winserverts/thread/37d6698b-7ad5-4cf3-a952-f1ad8f109dd7

hope helps

regards,
sandesh dubey.
-------------------------------
mcse|mcsa:messaging|mcts|mcitp:enterprise adminitrator
blog: http://sandeshdubey.wordpress.com
posting provided no warranties, , confers no rights.




Windows Server  >  Directory Services



Comments

Popular posts from this blog

Edit Group Policy

Hyper-V VM not reaching OS 'Logon' screen

DNS question...