Link to home
Start Free TrialLog in
Avatar of MalcolmNZ
MalcolmNZ

asked on

RDP to AD

Hi . . . please help.
We are setting up an RDP system as follows, SBS 2003 Server and a MS Windows 2003 R2 Terminal (TS) Server.  We have setup two users in AD on the SBS, also same two users as local on the TS Server for testing.
We can successfully log on as Administrator using RDP to the Domain, and both Servers locally.  We can log on locally to both Servers as the test users BUT NOT to the Domain.  Even if we do not use the TS Server and use the SBS IP address to logon to the Domain as a User it fails/errors.  The message is Windows cannot log you on because your profile cannot be loaded.  Check you are connected to the network . . . . 
I believe the problem is in AD somewhere!

SOLUTION
Avatar of JohnGerhardt
JohnGerhardt
Flag of Switzerland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Avatar of Darius Ghassem
Darius Ghassem
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Sorry also go to Administrative tools then local polices -> User Right Assignments
->Allow Log On Through Terminal Server
Avatar of MalcolmNZ
MalcolmNZ

ASKER

dariusg:  Just having a problem locating the "TS Administrative tools ".  Are we talking about the SBS Server ?

regards
Malcolm
Sorry didn't mean to list that one. Try the below

Sorry also go to Administrative tools then local polices -> User Right Assignments
->Allow Log On Through Terminal Server
Hi dariusq, This is an SBS 2003 system, if you select Start, then Administrative Tools, there is no listed local polices.  Please advise.
Sorry . . . . that should read Start, then Programs, the Administrative Tools.
Wait a minute, I just noticed something else..  You said that you can log on locally with both users on both servers??!?!?   Domain controllers don't have local accounts, only domain accounts..   What exactly are you doing?
Yes, at one point I could select the SBS Server name in the login to box instead of the domain name.  Due to your remark, I just tried it now, but was not able to.  So it appears something was not correct before.  

I currently have the position of being able to login with RDP as Administrator but NOT one of the two users.  Thanks for pointing out what the situation should be.
Go into the default domain controller policy in AD and you will find the local policy under here. Also, go into Terminal Server Configuration then right-click RDP-TCP then go to properties then Security and add the users here or just add them to the Remote Desktop group
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Hi
Not sure why this Alert box has appeared.  I wish to close the question.
Malcolm
Hi
Just altered the points to the total allocated !
Malcolm