A (driving me nuts) win2000 Server question

Dark

Senior member
Oct 24, 1999
639
0
0
Hi, this is driving me crazy. Since I promoted my server to a PDC, All the users i create are unable to log in the server directly (this is a stand alone server for testing purposes). Unless I log on as the admin, I get the msg that I can't log in interactively...I checked the local and domain security, I can't see where the problem can be...plz help :( :|
 

zuffy

Senior member
Feb 28, 2000
684
0
71
Open Local Security Settings. Click on Local Policies / User Rights Assignment. Look for Log on Locally. Assign the group of users you want rights to be able to logon to the server.
 

Dark

Senior member
Oct 24, 1999
639
0
0
Thx zuffy I'll try that as soon as I get back to work. I have another question while we're at it. Even if the Administrator can logon to the PDC, he can;t get in using a vpn eventhough the RRAS is configured correctly...Do I have to set something in the local policy as well?
 

Dark

Senior member
Oct 24, 1999
639
0
0
Damn, it's not working...I changed that in local security setting as well as in domain security settig cos it seems the later overides the local. I still receive the msg: The local policy doesn't allow you to log on interactively...Any help pleaaaaaase. I HAVE to get it working by Monday :( :|:disgust::confused:
 

StuckMojo

Golden Member
Oct 28, 1999
1,069
1
76

you're looking in the right place. that is the policy that controls it. sounds like your changes aren't sticking :(

check MSDN for clues...
 

zuffy

Senior member
Feb 28, 2000
684
0
71
Dark,

Is there any groups assigned to the Deny Logon Locally right? Check it... it should be blank.
 

StuckMojo

Golden Member
Oct 28, 1999
1,069
1
76

oh yeah, and check the group policy settings (as opposed to security settings)

you can get to it by running gpedit.msc
 

zuffy

Senior member
Feb 28, 2000
684
0
71
Also, make sure that the everyone group is in the Bypass Traverse Checking right.