RDP session into 1 of 3 Domain Controllers and get  \\server\Desktop not accessible. You might not have permission to use the network resource

Posted on 2011-04-19
Last Modified: 2012-06-21
Hey Experts,

I have read several of the topics, and I haven't found one that has my scenario just yet.  I have 5 servers on the network.

TS1 - Terminal Server 1 (Domain Controller)
TS2 - Terminal Server 2
Srv1 - Old DB (Domain Controller)
DB1 - Database Server (Domain Controller)
Ex1 - Exchange

Srv1 is dieing.  We had to take it off the network due to hardware failures.  We have been migrating the printer shares and file shares from Srv1 to DB1 for now.

I have completed pretty much everything.  We are down to this last issue. I have 1 user that opens an RDP connection to DB1 and gets the following error when the session opens -
"\\Srv1\folder-redirect\user\Desktop not accessible. You might not have permission to use the network resource"

So obviously the users' desktop is located on the old Srv1 that is not on the network.  Now I have copied over the user's profile folder to DB1.

How do I change the redirect Desktop for that User?  I have tried to go into the User's properties and enter in the path in the "Profile" Path, but I still get this error.  They utilize AD.  I am assuming this is a policy issue?  Where would I look to adjust this?

Thank you ahead of time for your help!
Question by:shaw71
    LVL 12

    Expert Comment

    You can view in AD Users and computers in a domain controller and look for the user properties that have this problem. If in the profile, under terminal services profile you have to change the profile path to point to the new server.

    If this a GPO, you can use Group Policy Management to review the information for your user and check if a folder redirection or terminal services profile is redirected by GPO.

    Another way to view it is in AD Users and computers locate the user account, left click and then All Task - Resultant Set of Policies (could be planning for GPO configured how is supossed to be, or loggin that is for GPO applied to user account in a specific computer.

    Author Comment


    Thank you for your input!  

    Under AD Users I have gone to the profile and there isn't a pointer for this user.

    Under the GPO, I am not sure where to look this up.  I went under the properties "group policy" and there wasn't a policy listed to edit.

    I have tried to point the file in the User profile and it still looks to the old server.   What would be driving the path? GPO if there isn't settings in the User/properties?


    Not sure where to set this.  
    LVL 12

    Accepted Solution

    You can use GPRESULT /USER usuario_destino /V to check if the GPO is for user configuration


    GPRESULT /S ts_server_name /USER username /SCOPE COMPUTER /Z

    and verify the information. You can see the GPO that apply to user, to computer, etc.

    you can run with >> to send the result to a file like next lines

    GPRESULT /USER usuario_destino /V >> c:\userconfig.txt


    GPRESULT /S ts_server_name /USER username /SCOPE COMPUTER /Z  >> c:\computer_user_config.txt

    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    What Is Threat Intelligence?

    Threat intelligence is often discussed, but rarely understood. Starting with a precise definition, along with clear business goals, is essential.

    Scenerio: You have a server running Server 2003 and have applied a retail pack of Terminal Server Licenses.  You want to change servers or your server has crashed and you need to reapply the Terminal Server Licenses. When you enter the 16-digit lic…
    [b]Ok so now I will show you how to add a user name to the description at login. [/b] First connect to your DC (Domain Controller / Active Directory Server) SET PERMISSIONS FOR SCRIPT TO UPDATE COMPUTER DESCRIPTION TO USERNAME 1. Open Active …
    This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
    This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

    759 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    11 Experts available now in Live!

    Get 1:1 Help Now