Solved

"The local policy of this system does not permit you to log on interactively."

Posted on 2007-04-03
5
611 Views
Last Modified: 2008-05-31
When trying to log on at my Windows 2003 SBS, I have started getting the following message: "The local policy of this system does not permit you to log on interactively", regardless of which account I use, including the Administrator. I've tried using the ntrights tool to fix the problem but it still won't let me log in.

I can however Remote Desktop in without any problems, but it would be nice every once in a while to actually be able to sit down at the server and do maintenance.

Thanks!
0
Comment
Question by:jeremyleff
5 Comments
 
LVL 48

Accepted Solution

by:
Jay_Jay70 earned 250 total points
ID: 18847473
jeremyleff,

when you remote in - start - run - gpedit.msc - compt config - windows settings - secuirty settings - local policies - user rights assignment

check for wqho is in deny logon locally and the logon locally options

Regards,

James
0
 

Expert Comment

by:ollietait
ID: 18850423
I had this on a win2k DC once - a reboot cleared it and it never returned.
0
 
LVL 1

Expert Comment

by:cdnq8
ID: 18856279
Hi
I agree with James just have check on that settings .

Taher
0
 

Author Comment

by:jeremyleff
ID: 18868590
After some digging through AD U&C turns out the Admins Groups was under the Domain Controllers group and that was restricting access. Don't know how that happened!
0
 
LVL 48

Expert Comment

by:Jay_Jay70
ID: 18880358
Magic!
0

Featured Post

Is Your AD Toolbox Looking More Like a Toybox?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, we will see the basic design consideration while designing a Multi-tenant web application in a simple manner. Though, many frameworks are available in the market to develop a multi - tenant application, but do they provide data, cod…
Synchronize a new Active Directory domain with an existing Office 365 tenant
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

778 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question