Solved

Terminal Server Access

Posted on 2009-03-31
7
307 Views
Last Modified: 2013-11-21
I created a new user to access our terminal server and i gave all the same access which other terminal server users have. They all are under Remote desktop users group. But only this particular new user i created having problems log in into the terminal server, when i use this user name i get this error message

  "To log on to this remote computer, you must have Terminal Server User Access permissions on this computer. By default, members of the Remote Desktop Users group have these permissions. If you are no a member of the Remote Desktop Users group or another group that has these permissions, or if the Remote Desktop User group does not have these permissions, you must be granted these permissions manually."

How can i resolve this?
0
Comment
Question by:moeshakir
  • 3
  • 3
7 Comments
 
LVL 4

Expert Comment

by:Junglegun
ID: 24033292
Check the users "Terminal Services Profile" in Active Directory. Make sure "allow logon to terminal server" is selected.
0
 
LVL 21

Accepted Solution

by:
snusgubben earned 500 total points
ID: 24033346
Also check terminal services configuration (start > run > tscc.msc or was it TSConfig.msc in 2008...? > security) that your user is listed here (or the remote desktop users group)


SG
0
 

Author Comment

by:moeshakir
ID: 24033361
i dont see this option "allow logon to terminal server" uner the terminal services tab on active directory.

the box says " deny this user to terminal server" is un checked though.
0
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

 

Author Closing Comment

by:moeshakir
ID: 31565044
Thank you so much, you answer was great!!
I have a quick question for you, is there a way i can restrict a user on the terminal server? such as what he can access and what he cant?
0
 
LVL 21

Expert Comment

by:snusgubben
ID: 24033479
If you tick the "deny this user terminal server" he will not be able to log on to any TS in your domain.

When a user is in the Remote Desktop Group he will get ordinary "user access" to the TS. When you say restrict a user, what do you want him not to do?


SG
0
 

Author Comment

by:moeshakir
ID: 24033502
I only want him to access one particular software, i dont want him to go through the c drive etc.
0
 
LVL 21

Expert Comment

by:snusgubben
ID: 24033656
Citrix is superior when it comes to these limitations, but is offcours expensive.

In server 2003 your question is impossible. You can lock the user down with different GPOs (hide c-drive etc. but that's a bad idea). I'm pretty new to server 2008 so I can't say for sure, but I guess it will be difficult. I have seen Server 2008 "Publish Application" but I have not yet study it, so I can say if that's the solution.


SG
0

Featured Post

Are your corporate email signatures appalling?

Is it scary how unprofessional your email signatures look? Do users create their own terrible designs and give themselves stupid job titles? You can make this a lot easier for yourself by choosing an email signature management solution from Exclaimer today.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Remote Apps is a feature in server 2008 which allows users to run applications off Remote Desktop Servers without having to log into them to run the applications.  The user can either have a desktop shortcut installed or go through the web portal to…
Possible fixes for Windows 7 and Windows Server 2008 updating problem. Solutions mentioned are from Microsoft themselves. I started a case with them from our Microsoft Silver Partner option to open a case and get direct support from Microsoft. If s…
This tutorial will walk an individual through the steps necessary to configure their installation of BackupExec 2012 to use network shared disk space. Verify that the path to the shared storage is valid and that data can be written to that location:…
This tutorial will walk an individual through setting the global and backup job media overwrite and protection periods in Backup Exec 2012. Log onto the Backup Exec Central Administration Server. Examine the services. If all or most of them are stop…

920 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

15 Experts available now in Live!

Get 1:1 Help Now