Group Permissions not working on client computers

G

Guest

1 Server running Windows 2000 SP4 Advanced Server
DNS, Wins and AD

Create a group, add all AD users to group. Add domain group to all client
computers local administrators group. In theory this should greant all AD
users admin rights when they login. However, this does not work, none of the
users get admin rights. This is an old server that has its share of issues,
I've corrected DNS issues, I think, DNS seems to work great now that I have
re-created the forward lookup zone for my domain. I just can't get
permissions straight on the client computers. It also does not seem to be
applying Group policies. I also have a time problem, the clients won't time
sync with the server. So there are also other issues, but does anyone know
how to troubleshoot this? I just need to get the permissions working. There
are no errors in the event log or any other indication of a problem.

Thanks
 
G

Guest

The domain is in 2000 native mode, and the scope of the group is global. All
the users are in the same domain in the Same OU
 
J

Joe Richards [MVP]

After you log into the server, check the groups in your token with whoami or sectok.

joe
 
G

Guest

I have already been running whoami, and everything looks fine. Is there some
special switch or items I should be checking for?
 
J

Joe Richards [MVP]

You should be looking for the group you set up in the domain to be in the token
as well as the local administrators group.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top