Giving log on locally permossions on a 2003 AD server

We have a server in a remote location which a users needs to log on to via RDP.  The server is a Domain controler but I do not want to make the user part of the Domain admin or Administrator groups.  How can I get the user to only log into the server.

I have tried making him part of the remote desktop users group but he still does not have permissions to log on.
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Default Domain Controllers GPO Object
Pull up the User Rights portion of the GPO

"Allow Logon Through Terminal Services" right.


Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
wannabecraigAuthor Commented:
Hi.  The solution was a bit casual and took me a while to find out what you were talking about.
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Microsoft Server OS

From novice to tech pro — start learning today.