New user can't log on

  • Thread starter Thread starter Bapu
  • Start date Start date
B

Bapu

I built a brand new DC and of course installed Active
Directory. I installed DHCP, WINS and internal DNS on this
server.

In my old NT4.0 domain I had a stanalone w2k server doing
external DNS. On this server I joined the new W2K domain
and installed AD and made this machine an additional DC.

In both of these installations, I pretty much took the
standard install options. I did however include the Pre-
Windows 2000 option in the building of the first DC (not
sure why, just seemed like a good idea at 2:00AM).

Then I created my first, and only, new user. This new user
could not log on. I was told the local policy did allow
the user to log on. Was this becuase it was on a DC? Did I
created the new user wrong (I just added a new user and
set the password)?

TIA for any help.
Bapu.
 
A domain user cannot login to Servers and you don't want them too! Make them
an admin and see if it works then you will know that was the issue.
 
While in agreement that you don't want users logging onto your dc's, for
testing etc, you can allow this by setting the security policy for dc's in
the following location;
domain controller policy/computer configuration/windows settings/security
settings/local policies/user rights assignments/ logon locally (this is if
opened via mmc, but if opened through admin tools, it starts with the
security settings folder) Be sure that you open the right one and edit the
DC policy and not the Domain policy.

--
David Brandt
Microsoft Corporation

This posting is provided "AS IS" with no warranties, and confers no rights.
Please do not send e-mail directly to this alias. This alias is for
newsgroup purposes only.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Back
Top