Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

RDS on 2008 R2 Server Running Active Directory

Posted on 2011-09-06
7
Medium Priority
?
613 Views
Last Modified: 2012-05-12
I know this is not "Best Practice" - But I need to have RDS running on a 2008 R2 Server running AD.  This is their only server.   I have everything configured except - I get an error stating that the account must be an administrative account.    I have read that you can enable "Allow log on thorugh Remote Desktop Service" in the group policy.  But I cannot find where this is located on the Domain Controller?   I am looking in the GBMC.MSC?   Wrong place?

COPIED:
Start Group Policy Management Editor and edit “Default Domain Controller” policy. Locate “Allow log on through Remote Desktop Services” User rights setting (Computer Configuration\Windows Settings\Security Settings\Local Policies\User Rights Assignment\). Add the new security group and close the management console.

Thanks
0
Comment
Question by:Perry_Wood
  • 2
  • 2
  • 2
  • +1
7 Comments
 
LVL 2

Expert Comment

by:David11011
ID: 36489971
I know about 5 things that fit the acronym RDS. Which one are you using?
0
 
LVL 70

Expert Comment

by:KCTS
ID: 36489974
Set it in the Group Policy Management console and either apply it to the Domain Controllers OU or to the domain itself.
0
 
LVL 2

Expert Comment

by:David11011
ID: 36489977
oh lol I guess I should have read the tags. RDS terminal server. Nevermind
0
Visualize your virtual and backup environments

Create well-organized and polished visualizations of your virtual and backup environments when planning VMware vSphere, Microsoft Hyper-V or Veeam deployments. It helps you to gain better visibility and valuable business insights.

 
LVL 37

Expert Comment

by:Neil Russell
ID: 36490275
Not best practice? Its about as far from it as you can get.  IF the customer wants RDS running then YOU as their technology specialist should only give one answer. "You need another server."

The risk to their business is immense. And ONLY 1 server? What happens when the AD corrupts and NOBODY can log in to ANY workstation?

I would suguest you go back and tell them to either invest or sign a disclaimer saying its NOT your fault when it all goes pete tong!!
0
 

Author Comment

by:Perry_Wood
ID: 36491063
KCTS - Can you be more specific as to where this is?  I must be looking in the wrong locaction.  If I run the GBMC.MSC from the run command and bring up the Group Policy Manager, and drill down to the domain conftroller . . . Click on the tab that says setting,   . . . where to from there, or am I in the wrong location.  Thank you!
0
 
LVL 37

Accepted Solution

by:
Neil Russell earned 2000 total points
ID: 36491198
Start>Run>gpedit.msc
In left pane, expand Computer Configuration>Windows settings>Security Settings>Local policies>User Rights Assignment
Now in right-pane, double-click "Allow log on through terminal services" then click add and add non-administrative users.
Start>run>gpupdate /force

0
 

Author Closing Comment

by:Perry_Wood
ID: 36491696
THANK YOU!!!!!!!!!
0

Featured Post

Simplify Active Directory Administration

Administration of Active Directory does not have to be hard.  Too often what should be a simple task is made more difficult than it needs to be.The solution?  Hyena from SystemTools Software.  With ease-of-use as well as powerful importing and bulk updating capabilities.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Background Information Recently I have fixed file server permission issues for one of my client. The client has 1800 users and one Windows Server 2008 R2 domain joined file server with 12 TB of data, 250+ shared folders and the folder structure i…
A safe way to clean winsxs folder from your windows server 2008 R2 editions
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
Suggested Courses

877 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question