Solved

Add Domain User to Local Remote Desktop Group via Group Policy

Posted on 2013-05-15
6
554 Views
Last Modified: 2013-07-10
I am looking for a way to add a domain user account to their workstations Remote Desktop group via GP.

Basically all of our users should have RDP access to their own office desktops here in the office. We have noticed that some users are missing out of that group therefore do not have RDP access to their machines. Rather than manually checking this group and adding their domain user accounts individually, is there a way this can be done centrally? I assume GP would be the best way to go about doing this but I am opened to other 3rd party solutions as well.

Any suggestions would be appreciated.

About the environment:

Desktops: Windows 7 Pro x64
Servers: Server 2008 R2
Domain Controllers: Mostly Server 2008 R2
Domain Level: 2003
0
Comment
Question by:GR JN
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
6 Comments
 
LVL 70

Expert Comment

by:KCTS
ID: 39168816
0
 

Author Comment

by:GR JN
ID: 39168859
Thanks but we are not looking to add a AD group to the Local RDP group. We are looking to add the AD user whom the machine belongs to. Is there a way to add any user account that has logged into the machine to the local RDP group?
0
 

Expert Comment

by:NKRC
ID: 39169018
You can use WinVNc . This is a third party software that you can install in the users system. They just need to put the IP and will get the remote control of the others system.
0
Is Your AD Toolbox Looking More Like a Toybox?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

 

Author Comment

by:GR JN
ID: 39169253
Not sure how this will help me out here. I do not need remote access to the users desktop.
0
 
LVL 54

Expert Comment

by:McKnife
ID: 39169547
Hi.

If you used restricted groups and added the group "domain users" to the local group remote desktop users, you would be fine. Remember, only who may login locally may also login via RDP, so this should not tear up a security hole.
0
 
LVL 4

Accepted Solution

by:
vak73 earned 500 total points
ID: 39189984
0

Featured Post

The Eight Noble Truths of Backup and Recovery

How can IT departments tackle the challenges of a Big Data world? This white paper provides a roadmap to success and helps companies ensure that all their data is safe and secure, no matter if it resides on-premise with physical or virtual machines or in the cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Background Information Recently I have fixed file server permission issues for one of my client. The client has 1800 users and one Windows Server 2008 R2 domain joined file server with 12 TB of data, 250+ shared folders and the folder structure i…
This article describes my battle tested process for setting up delegation. I use this process anywhere that I need to setup delegation. In the article I will show how it applies to Active Directory
Windows 8 came with a dramatically different user interface known as Metro. Notably missing from that interface was a Start button and Start Menu. Microsoft responded to negative user feedback of the Metro interface, bringing back the Start button a…
This video shows how to use Hyena, from SystemTools Software, to update 100 user accounts from an external text file. View in 1080p for best video quality.

751 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question