remote desktop to my 2003 Server doesn't work after joined to a 2008 domain

Posted on 2010-09-21
Last Modified: 2012-05-10
I have a Server 2003 R2 Enterprise.  New install of the op system to a Dell blade server.  Before I join it to the domain from outside of the LAN I can remote desktop into it (and of course from another PC on the LAN I can RD into it as well).  But as soon as I join it to the domain I can no longer access it from outside of the LAN (but it still works inside the LAN).  The error message is “remote desktop can’t connect to the remote computer.”  Some details – the domain controller is a Small Business Server 2008 Premium.  Also I installed terminal server and terminal server licensing on the 2003 box after it was joined to the domain.  Is this a group policy issue on the 2008 domain controller?  Also note that there is another member server – a Server 2008 Standard which I can remote into both inside and outside of the LAN.  I have checked the Server 2003 Windows firewall and “remote desktop” is an exception no matter whether the server is joined to the domain or in a workgroup.
Question by:scottc88
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
  • 2

Expert Comment

ID: 33728487
Run a group policy result against the machine from GPMC, look closely at the setting for the remote desktop. Sounds like you may find something that you may be missing.

Author Comment

ID: 33728554
what is the command line for running that?  Thanks.

Expert Comment

ID: 33728684
You need to do it from a PC tha thas the AD admin tools installed on it or the domain controller with Group Policy Management Console Installed.

It will probably be easier to go to the Win2008 Domain Controller and go to Administrator Tools > Group Policy Management.

You will see on the bottom left Group Policy Results, right click and start a new group policy wizard.
Guide to Performance: Optimization & Monitoring

Nowadays, monitoring is a mixture of tools, systems, and codes—making it a very complex process. And with this complexity, comes variables for failure. Get DZone’s new Guide to Performance to learn how to proactively find these variables and solve them before a disruption occurs.

LVL 77

Accepted Solution

Rob Williams earned 500 total points
ID: 33728974
One issue is when you join a server to an SBS 2008 domain, by default, it places it in the "computers" OU. This means PC group policies, including for the firewall, are applied to the server. You need to move it to the MyBusiness\Computers\SBSServers OU and run GPUpdate /force on the new server

Author Closing Comment

ID: 33730344
Awesome!  Learn something new every day.  So tired of pulling my hair out on this one.  Thanks so much!
LVL 77

Expert Comment

by:Rob Williams
ID: 33730414
Very welcome, glad you were able to resolve.
It is something that should be fixed in an update in my opinion.

Featured Post

Free Tool: SSL Checker

Scans your site and returns information about your SSL implementation and certificate. Helpful for debugging and validating your SSL configuration.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Background Information Recently I have fixed file server permission issues for one of my client. The client has 1800 users and one Windows Server 2008 R2 domain joined file server with 12 TB of data, 250+ shared folders and the folder structure i…
You may have discovered the 'Compatibility View Settings' workaround for making your SBS 2008 Remote Web Workplace 'connect to a computer' section stops 'working around' after a Windows 10 client upgrade.  That can be fixed so it 'works around' agai…
This tutorial will walk an individual through locating and launching the BEUtility application and how to execute it on the appropriate database. Log onto the server running the Backup Exec database. In a larger environment, this would generally be …
To efficiently enable the rotation of USB drives for backups, storage pools need to be created. This way no matter which USB drive is installed, the backups will successfully write without any administrative intervention. Multiple USB devices need t…

734 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question