Administrator Unable to Logon Locally?

  • Thread starter Thread starter Steve Wasser
  • Start date Start date
S

Steve Wasser

I've found a workaround, but I am still baffled about something. I set up a
small isolated network in our office, with one DC and a couple of
workstations. Immediately after joining the domain, after immediately
installing Windows 2000 server, I can no longer log on locally as
Administrator. Can a global policy prohibit this? I didn't think local admin
could be locked out that way, but obviously I'm wrong. Question is, where
would this policy come from? I explicitly gave the local computer's
administrator rights to log on locally. The only way I can log on is to use
the domain admin account.

TIA,

Steve
 
Sorry, my post below is ambiguous. The workstation I am installing is
another Win2000 Server, but it's just on a desktop. A DC already exists,
this would just be a member server.
 
Try to give the administrators group logon locally user right and make sure
that there is no conflicting user right for deny logon locally. If it is
undefined then define it with just the guest account added. --- Steve
 
Thanks, that was actually my workaround. The mystery is why, without me
making any global or local policy changes, did it lock the admin group,
there is no policy in the domain that does that...it just seemed wierd.
 
After joining the domain was there any difference in the local and effective
setting for logon locally on that Windows 2000 server and what was shown for
the effective setting? By default the local setting would include users
and administrators.--- Steve
 
Back
Top