Solved

Warning during setting up a local administrator password on Windows 2012

Posted on 2014-07-24
9
687 Views
Last Modified: 2014-08-10
Hi

I have a new windows 2012 server (VM) and this server will be our new SQL  database server and this server is on the domain now.
I want to set local administrator password, so I went Administrative Tools.
3.Double click on Computer Management.
4.Expand Local Users and Groups.
5.Click on Users.
6.Right click on Administrator. Click on Set Password.

I get a Warning:
Resetting this password might cause irreversible loss of information for this user account. For security reasons, Windows protects certain information by making it impossible to access if the user's password is reset.
The data loss will occur the next time the user log off.
You should use this command only if a user has forgotten his or her password and does not have a password reset disk. If this user has created a password reset disk should use the disk to set the password.

So if I reset the local administrator password will this change the domain administrator password.

Please suggest

Thanks
0
Comment
Question by:lianne143
  • 4
  • 2
  • 2
  • +1
9 Comments
 
LVL 34

Assisted Solution

by:Seth Simmons
Seth Simmons earned 160 total points
ID: 40216310
no; the local administrator password is for the local computer account
you can't change the domain administrator account from the local computers and groups interface
domain passwords changed by the administrator are done through active directory users and computers
0
 
LVL 25

Assisted Solution

by:Mohammed Khawaja
Mohammed Khawaja earned 80 total points
ID: 40216361
No, this is local administrator password only.  Domain Admin password is stored in AD and when you are using Computer Management, you are looking at the local computer accounts only.  For domain, you need to use AD Users & Computers utility.
0
 

Author Comment

by:lianne143
ID: 40216362
After configuring the local administrator password when I login with Server Name\administrator and the password

I get a : To sign in remotely you need the right to sign in through remote desktop services. By default members of the remote desktop serveries users group .

I followed the below  articke and If I have to add the local administrator to this group the Add user option is completely greyed.
http://www.orbitsit.co.uk/2014/03/unable-remote-desktop-server-2012-adding-user-remote-desktop-users-group/

Please suggest
Thanks
0
NFR key for Veeam Backup for Microsoft Office 365

Veeam is happy to provide a free NFR license (for 1 year, up to 10 users). This license allows for the non‑production use of Veeam Backup for Microsoft Office 365 in your home lab without any feature limitations.

 

Author Comment

by:lianne143
ID: 40216393
I noticed on the allow logon through remote desktop window properties.

I can see a security group called "Terminal Group" added there  and  I can see this group in our AD.
If I open the properties of this group , I can see the administrator  member of this group and not sure , why it is not allowing to RDP as a local admin.

thanks
0
 

Author Comment

by:lianne143
ID: 40216400
Hi Guys

When  I log in as a local administrator from the VSphere console , it logs in successfully , but not from RDP,
So it looks like it will not log in as a local administrator from RDP
Thanks
0
 
LVL 34

Assisted Solution

by:Seth Simmons
Seth Simmons earned 160 total points
ID: 40217332
@lianne

remote desktop group for the domain has nothing to do with allowing access for the local administrator
if you go to the remote settings and click 'select users' does it say that administrator already has access?

@mohammed

please read other comments first before repeating exactly what others have already said
0
 
LVL 20

Assisted Solution

by:compdigit44
compdigit44 earned 160 total points
ID: 40219839
Is RDP enabled on the server?
0
 

Author Comment

by:lianne143
ID: 40225549
Yes RDP is enable on the server
Thanks
0
 
LVL 20

Accepted Solution

by:
compdigit44 earned 160 total points
ID: 40225642
If you run a netstat -ab do you see port 3389 listed.
0

Featured Post

Webinar: Aligning, Automating, Winning

Join Dan Russo, Senior Manager of Operations Intelligence, for an in-depth discussion on how Dealertrack, leading provider of integrated digital solutions for the automotive industry, transformed their DevOps processes to increase collaboration and move with greater velocity.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
This article runs through the process of deploying a single EXE application selectively to a group of user.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question