Solved

Server 2008 - can't add users to local admin

Posted on 2009-06-29
8
1,636 Views
Last Modified: 2012-05-07
i have a new 2008 network - 2 2008 DCs (64bit) and a few member servers.

I have a SQL server - running on a fresh 2008/64 install (fully patched)
I created a user SERVICESQL and added to all teh domain type admin accoutns.
i can log in to the server, but I can't run the sql setup as the user - I get a permissions error (can't access file)

If I log in as administrator@domain I can run setup fine.

during the sql setup -there is a place to add other admins - when I try to add the sql account I get 'SVC SQL: No mapping between account names and Security IDs was done"

I also can't add any domain accounts in the local users under Administrators - when I try to add domain admins - it complains they are already there...

0
Comment
Question by:erikwhiteway
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
  • 2
  • +1
8 Comments
 

Author Comment

by:erikwhiteway
ID: 24738953
Don't know if it matters - but all the machine are running in HV on 64 bit bases. (also on the domain)
0
 
LVL 59

Accepted Solution

by:
Darius Ghassem earned 300 total points
ID: 24739002
0
 
LVL 5

Expert Comment

by:CoSmismgr
ID: 24739050
So you created the user "SERVICESQL" in Active Directory and then added this user to the domain\Administrator group?

If so, go into SQL server mgmt studio, connect using Windows authentication and then make sure that user is a member of the BUILTIN\Administratoors under Security | Logins
0
Does Powershell have you tied up in knots?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

 

Author Comment

by:erikwhiteway
ID: 24739083
i think it may be a problem with the server SID - the macheine is an export / import of a generic HV base (befoer added to the doamin) but looks LIKE HV did not redo the sid Ilike I thought it would.

Just looking for a SID tool now
0
 
LVL 5

Expert Comment

by:CoSmismgr
ID: 24739136
Logging into the server as that windows user should solve the SID issue.
0
 
LVL 10

Assisted Solution

by:Datedman
Datedman earned 200 total points
ID: 24739207
There's a program called NEWSID at http://technet.microsoft.com/en-us/sysinternals/bb897418.aspx

Might want to temp. disjoin the domain before using it.
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 24739231
That most likely is your underlining issue.
0
 

Author Comment

by:erikwhiteway
ID: 24739368
Looks lik ethe SID was the problem - export/import a generic HV install - renaming - and adding to the domain did not fix the SID.

I ran the tool - then removed and re-added to the domain (Shoudl have removed FIRST - then sid changed)

thanks
0

Featured Post

Get Actionable Data from Your Monitoring Solution

Your communication platform is only as good as the relevance of the information you send. Ensure your alerts get to the right people every time with actionable responses. Create escalation rules that ensure everyone follows the process and nothing is left to chance.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The recent Microsoft changes on update philosophy for Windows pre-10 and their impact on existing WSUS implementations.
After seeing many questions for JRNL_WRAP_ERROR for replication failure, I thought it would be useful to write this article.
This tutorial will show how to configure a new Backup Exec 2012 server and move an existing database to that server with the use of the BEUtility. Install Backup Exec 2012 on the new server and apply all of the latest hotfixes and service packs. The…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

691 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question