Terminal sessions with trusted domain logins

J

Jack H

I have a forest with two domains, one inside the firewall and one in the
DMZ. I have configured the terminal server, which is a DC and Global
Catalog server for its domain, to communicate with the other servers inside
the network using IPSec and all is fine there. I can map drives and all
that good stuff.

The problem is that I want users on the inside domain to be able to log in
to the terminal server with their inside domain accounts. As an Enterprise
Admin I can, but I have yet to come across the method of getting a standard
user in. The problem arises when the profile cannot be loaded. I have
given all the necessary rights to the profile directory and have even tried
putting it inside the domain where I am positive they have access.

Ant ideas how to make this work?

Thanks,

Jack
 
G

Guest

Have you given these users the "logon locally" right in the default domain controllers policy? This is required if TS is running on a DC and is one of the main reasons why people run TS on member servers, as changing the default domain controllers policy affects all DC's in the domain, not just this TS.

Patrick Rouse
Microsoft MVP - Terminal Server
http://www.patrickrouse.com
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top