Domain user login

L

Leo Zhang

there is an account named itmgr on my server(Domain) as a user rights, but i
want to use
this account as a client administrator. how to ?
I created a local administrators as the same name and password, when i loged
on the client
I found I still had insufficient permission to control the local computer.
eg. create a
new local user.

How to ?

Thanx a million!!!
 
G

Guest

Don't quite fully understand.

Ignoring the server part, you said you created a local administrator and
logged in locally on your client. Then you should have full rights on the
client. Otherwise, your account is not a local administrator.

Make sure you don't mix up domain account and local account.

BR,
Denis
 
L

Leo Zhang

Hi, The account is member of users and administrators on local, but i havent
the whole rights...
 
P

ptwilliams

That would work if the domain user account itmgr was accessing the client
computer across the network. When you logon however, you have to choose
between using the domain-based itmgr account or the local itmgr account.
The former has no administrative rights on the machine; the latter does, but
is local.

You should use the restricted groups Group Policy function to add the domain
account to the local administrators group of computers within the scope of
the GPO.

Stick "Restricted Groups" into Google, and see if that suits your needs.

Bear in mind, that unless you're at a high SP, the default behaviour is to
replace - not merge. So, ensure that you add what's already a member of
this group via the restricted groups as well.


--

Paul Williams

http://www.msresource.net
http://forums.msresource.net


Hi, The account is member of users and administrators on local, but i havent
the whole rights...
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top