Still celebrating National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17

x
?
Solved

User Access to Server 2012 Remote Desktop

Posted on 2014-03-05
3
Medium Priority
?
7,706 Views
Last Modified: 2014-03-05
Hello Techies

I've been deploying several Server 2012 machines over the last couple weeks and I'm having trouble getting users to be able to login via Remote Desktop Connection.

I added one of the staff members to the "Remote Desktop Users" security group, but got this error on the login screen after making the connection:
To sign in remotely, you need the right to sign in through Remote Desktop Services. By default, members of the Administrators group have this right. If the group you're in doesn't have this right, or if the right has been removed from the Administrators group, you need to be granted this right manually.
After a little digging I thought I might need to install the Remote Desktop Services role and the Remote Desktop Licensing Manager. I did that and added 20 Server 2012 Device CALs to the system. However, this did not resolve the issue.

What am I missing here?



Thanks,
Brian
0
Comment
Question by:SkinnerTech
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 13

Accepted Solution

by:
Santosh Gupta earned 2000 total points
ID: 39907041
is this domain controller or member server ?

if member server then check the local GPO GPO_name\Computer Configuration\Windows Settings\Security Settings\Local Policies\User Rights Assignment
and see that Remote Desktop user is added to  "Allow log on through Remote Desktop Services" .

and its domain controller then also check "Allow logon locally" policy.
0
 

Author Comment

by:SkinnerTech
ID: 39907188
sgupta1181

That was it!

This is a secondary domain controller, so I made the following changes:

Group Policy\Computer Configuration\Policies\Windows Settings\Security Settings\Local Policies\User Rights Assignment\Allow log on locally
Account operators
Administrators
Backup Operators
Print Operators
Remote Desktop Users
The first four groups are allowed by default if this settings is not defined, as described on the 'Explain' tab, so I kept them on the list to avoid any compatibility issues.

Group Policy\Computer Configuration\Policies\Windows Settings\Security Settings\Local Policies\User Rights Assignment\Allow log on through Remote Desktop Services
Administrators
Remote Desktop users
Again, 'Administrators' are allowed by default if this settings is not defined, so if you want 'Administrators' to have Remote Desktop Access you either have to add them to the Remote Desktop Users group or add 'Administrators' to this setting.
0
 

Author Closing Comment

by:SkinnerTech
ID: 39907194
Great response time and accurate answer!
0

Featured Post

Hire Technology Freelancers with Gigs

Work with freelancers specializing in everything from database administration to programming, who have proven themselves as experts in their field. Hire the best, collaborate easily, pay securely, and get projects done right.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The reason that corporations and businesses use Windows servers is because it supports custom modifications to adapt to the business and what it needs. Most individual users won’t need such powerful options. Here I’ll explain how you can enable Wind…
Windows Server 2003 introduced persistent Volume Shadow Copies and made 2003 a must-do upgrade.  Since then, it's been a must-implement feature for all servers doing any kind of file sharing.
This tutorial will walk an individual through the process of configuring basic necessities in order to use the 2010 version of Data Protection Manager. These include storage, agents, and protection jobs. Launch Data Protection Manager from the deskt…
This tutorial will walk an individual through the process of installing the necessary services and then configuring a Windows Server 2012 system as an iSCSI target. To install the necessary roles, go to Server Manager, and select Add Roles and Featu…

688 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question