Solved

Domain Administrator being blocked on domain controller

Posted on 2008-10-24
2
526 Views
Last Modified: 2012-05-05
weird thing, logged in as domain administrator I cannot open administrative tools/Active Directory Users and computers.  I get a C:\windows\system32\dsa.msc, I get the same thing with Domain Security Policy, and a bunch other.  I've checked the permission on the file and i'm in there but no luck.  Any ideas???
0
Comment
Question by:ibtaya
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 7

Expert Comment

by:cmarandi
ID: 22800645
check your local policies... START / RUN / GPEDIT.MSC

Go to Windows Settings / security settings / local policies / user rights.

besides other settings, check the log on locally... anywhere there is administrator, make sure it's adminsitrator@domain.com or \\domain\administrator and not just administrator.



Also, in the DSA.MSC, right click the domain, and choose to delegate ... make sure the domain admin is listed in there.
0
 
LVL 2

Accepted Solution

by:
ibtaya earned 0 total points
ID: 22886261
tried that no luck.  It's everything in the c:\windows\system32 folder that this happening to.  I can add them through MMC but can't open them from the "normal" locations.  I've even tried opening MMC, adding the AD users and computers, deleting the dsa.msc from c:\windows\system32, then saving my open mmc as dsa.msc and it saves fine.  But when I go to open the newly saved dsa.msc, get the same error.
0

Featured Post

VIDEO: THE CONCERTO CLOUD FOR HEALTHCARE

Modern healthcare requires a modern cloud. View this brief video to understand how the Concerto Cloud for Healthcare can help your organization.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article shows theĀ method of using the Resultant Set of Policy Tool to locate Group Policy that applies a particular setting.
A hard and fast method for reducing Active Directory Administrators members.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlleā€¦
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.
Suggested Courses

628 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question