Link to home
Start Free TrialLog in
Avatar of Grasp Technologies
Grasp TechnologiesFlag for United States of America

asked on

2016 RD Services in Parent/Child domain configuration

Hello, I have a parent/child domain configuration. All of my RD Infrastructure machines (Gateway/Web cluster, Broker, Licenscing) live in the Parent.domain. All of my Session host servers, and users/groups are in the Child.parent.domain.

When I create my rule in the gateway, users in the child.parent.domain can only connect to their server if "Allow users to connect to any network resource" is selected in the RAP.

If I assign the specific computer group(located in the child.parent.dom) to the RAP the connection goes all the way through to "Loading Virtual Machine" and acts as if it will connect, then the last second fails out with the standard "User not Authorized" error...
User generated image

Users get this same experience if they go through RDWeb or straight RDP using the gateway.

I think the solution is similar to the issue in this post: https://social.technet.microsoft.com/Forums/en-US/b9111b86-6679-46df-92c6-d03b7dd0a186/rd-gateway-cap-and-child-domain?forum=winserverTS but since my setup is slightly reversed I can't seem to get the group organization across the child and parent domains correct.

Does anyone have any thoughts what I might be missing?
Thanks!

 Ian
Avatar of Coralon
Coralon
Flag of United States of America image

Are the users members of the local 'Remote Desktop Users' group on the session hosts?

Coralon
ASKER CERTIFIED SOLUTION
Avatar of Mahesh
Mahesh
Flag of India image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Grasp Technologies

ASKER

Thank you! That did it.

Ian