Solved

locked out of GPEDIT - allow logon through terminal services - help please

Posted on 2010-09-16
4
929 Views
Last Modified: 2013-11-21
In an effort to assist me, one of my staff changed a policy setting on our 2008 Standard Server using gpedit.msc

The setting changed was Windows settings / Local policies / User Rights Assignment / Allow Logon Through terminal Services

He changed this to Administrator and now as a consequence, none of the terminal services users can access the system. I cannot set it back as it appears to be locked.

I am logged on as the administrator and have tried running gpedit.msc as the administrator but no luck.

I would appreciate assistance as I have 20 users coming in the morning and they can't access their system.
0
Comment
Question by:johnstockbridge
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
4 Comments
 
LVL 6

Expert Comment

by:JJClements
ID: 33690339
Have you tried logging on as a local administrator and a domain administrator?
0
 
LVL 3

Accepted Solution

by:
EichhornH earned 500 total points
ID: 33690351
with gpedit.msc you can only change the local GPO. In a AD System you have to configure the policys in group policy management console under start -> management -> Group Policy Management Console.
Here you should can change the policys.
0
 

Author Comment

by:johnstockbridge
ID: 33690589
Not sure how to log on as a domain administrator, the only choice I have to logon is as Administrator.

I'll have a look at the Group Policy Management Console and see what policies are set up.

Thanks
0
 

Author Comment

by:johnstockbridge
ID: 33690620
EichhornH:   Which policy should I be looking at?
0

Featured Post

Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Using MS Hello on a Domain Joined Surface Book 4 49
Windows Server 2008 R2 - Clock Time out of synch 14 57
DNS Replication 12 71
Run Windows Server from USB 2 39
Background Information Recently I have fixed file server permission issues for one of my client. The client has 1800 users and one Windows Server 2008 R2 domain joined file server with 12 TB of data, 250+ shared folders and the folder structure i…
This article explains how to install and use the NTBackup utility that comes with Windows Server.
This tutorial will walk an individual through locating and launching the BEUtility application to properly change the service account username and\or password in situation where it may be necessary or where the password has been inadvertently change…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

733 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question