• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 436
  • Last Modified:

windows 2008 server test lab problem with domain admin user

I have created a test lab according to the microsoft test lab documentation. TEST LAB DOC

I have created DC1.
Created Domain Admin User1 in ADUC.
Created App1 and had it join the domain with user1 credentials.
Now whenever I log into App1 as User1 I have no rights whatsoever.
I can't make any changes, I can't ping anything (unable to contact ip driver).
If i log in with local admin acct, everything works fine.

what am I missing?
0
FIT-SS
Asked:
FIT-SS
1 Solution
 
Andy MIT Systems ManagerCommented:
Check the local administrators group on App1 - see if domain admins are listed as members of that group.
0
 
FIT-SSAuthor Commented:
when i try to add it says "domain admins" is already of member of group admin
0
 
Santosh GuptaCommented:
pls check if there is local user with named "User1".
0
What does it mean to be "Always On"?

Is your cloud always on? With an Always On cloud you won't have to worry about downtime for maintenance or software application code updates, ensuring that your bottom line isn't affected.

 
FIT-SSAuthor Commented:
there is no local user1.
0
 
Santosh GuptaCommented:
login with local admin and try to rename the user1 profile.
0
 
FIT-SSAuthor Commented:
I deleted the user1 and user2 profiles. Now when I login I get the error:
"you have been logged on with a temporary profile" with both of these users.
0
 
Santosh GuptaCommented:
ok, got it.

Go to registry
HKEY_LOCAL_MACHINE \ SOFTWARE\ Microsoft\ Windows NT \ CurrentVersion \ ProfileList

and delete all keys end with .bak
0
 
FIT-SSAuthor Commented:
Thanks. did that and now I don't get logged in with Temp profile but still do not have admin rights.
0
 
Santosh GuptaCommented:
try remove and rejoin the domain.

if still it not works, login as local admin and remove the "domain admin" group from "local administrator" group and readd.
0
 
FIT-SSAuthor Commented:
rejoined and same issue.
Domain admin does not show up in local admin, even though when I try to add it says it is there already.
0
 
Santosh GuptaCommented:
Seems you did not run sysprep /generalize for your template to ensure that a new SID is being generated for each created VM instance.

pls run and check.
0
 
yo_beeDirector of ITCommented:
Can you post a screenshot of APP1 logon screen with User1 as a username
0
 
FIT-SSAuthor Commented:
Ugg. I can't believe i forgot to sysprep.  This completely resolved the issue.
Thanks.
0

Featured Post

Get your Conversational Ransomware Defense e‑book

This e-book gives you an insight into the ransomware threat and reviews the fundamentals of top-notch ransomware preparedness and recovery. To help you protect yourself and your organization. The initial infection may be inevitable, so the best protection is to be fully prepared.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now