Solved

Allow Remote Desktop login Windows 2003 Member Server

Posted on 2014-10-15
13
136 Views
Last Modified: 2014-10-21
Hello!

I have 2003 member server in a windows 2003 domain, and need to configure terminal services.

Could you please precisely tell me what Group Policies and other settings I need to set, so that this would work?

I would like to have a specific Group Policy, and that the user is a member only of that policy, as to simplify things for later.
0
Comment
Question by:mrmut
  • 5
  • 4
  • 3
  • +1
13 Comments
 
LVL 37

Expert Comment

by:Bing CISM / CISSP
ID: 40383535
do you mean you need the specific information for configuring Terminal Services with W2K3's Group Policy (e.g to allow only domain users to access the TS), or also for the generation information about how to enable Terminal Services on W2K3?
0
 
LVL 23

Expert Comment

by:Coralon
ID: 40383553
0
 
LVL 36

Expert Comment

by:Jian An Lim
ID: 40383554
http://searchvirtualdesktop.techtarget.com/tip/Managing-Terminal-Services-via-Group-Policy
but the best thing is to go through the the group policy settings from microsoft which can be found here
(download the windows server 2003 sp 2 group policy settings)
http://www.microsoft.com/en-us/download/details.aspx?id=25250
0
 

Author Comment

by:mrmut
ID: 40390743
Thanks all, these are fine - but partial. - I configured this out, however the user's can't connect. I think I've done Group Policies well, something else looks like blocking user logon.

Any ideas, or more comprehensive guide?
0
 

Author Comment

by:mrmut
ID: 40390745
(It is a terminal server 2003 under a domain, a member server)
0
 
LVL 36

Expert Comment

by:Jian An Lim
ID: 40390867
can you do a rsop (from the group policy management) on the users to see the effective group policy?

when you say users cant connect, did they see a pop up screen or what is the error message?
0
Complete VMware vSphere® ESX(i) & Hyper-V Backup

Capture your entire system, including the host, with patented disk imaging integrated with VMware VADP / Microsoft VSS and RCT. RTOs is as low as 15 seconds with Acronis Active Restore™. You can enjoy unlimited P2V/V2V migrations from any source (even from a different hypervisor)

 
LVL 36

Expert Comment

by:Jian An Lim
ID: 40390868
have you given user access to RDP ?
0
 
LVL 23

Expert Comment

by:Coralon
ID: 40391219
They do have to be an administrator on the server to be able to connect?  Without that, you cannot have them RDP into it.

Coralon
0
 

Author Comment

by:mrmut
ID: 40391746
rsop works fine, they are in a group that is given privleges. From all I can see, they should be able to connect, but it doesn't work.

If set admins, it works.
0
 
LVL 36

Expert Comment

by:Jian An Lim
ID: 40393096
can you also add them into remote desktop users group ? (local group)
0
 
LVL 23

Expert Comment

by:Coralon
ID: 40393247
The Remote Desktop Users group will not work.  Because this is for admin mode, they absolutely must be part of the local administrators group.  

The only way around it is to convert the system to a full TS/RDS host, and reinstall your applications, and this can incur a lot of overhead and will tend to break a lot of "server level" applications.  

Coralon
0
 

Author Comment

by:mrmut
ID: 40394200
OK, so - how to make it work? :)
0
 
LVL 36

Accepted Solution

by:
Jian An Lim earned 500 total points
ID: 40394271
the OP says it is  terminal services, I am very sure you don't need admin rights to logon to terminal services


http://blogs.technet.com/b/askperf/archive/2011/09/09/allow-logon-through-terminal-services-group-policy-and-remote-desktop-users-group.aspx
0

Featured Post

Highfive + Dolby Voice = No More Audio Complaints!

Poor audio quality is one of the top reasons people don’t use video conferencing. Get the crispest, clearest audio powered by Dolby Voice in every meeting. Highfive and Dolby Voice deliver the best video conferencing and audio experience for every meeting and every room.

Join & Write a Comment

by Batuhan Cetin In this article I will be guiding through the process of removing a failed DC metadata from Active Directory (hereafter, AD) using the ntdsutil tool in a Windows Server 2003 environment. These steps are not necessary in a Win…
Numerous times I have been asked this questions that what is it that makes my machine log on so slow, there have been cases where computers took 23 minute exactly after taking password and getting to the desktop. Interesting thing was the fact th…
Internet Business Fax to Email Made Easy - With eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…
This tutorial demonstrates a quick way of adding group price to multiple Magento products.

708 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now