Group Permissions not working on client computers

  • Thread starter Thread starter Guest
  • Start date Start date
G

Guest

1 Server running Windows 2000 SP4 Advanced Server
DNS, Wins and AD

Create a group, add all AD users to group. Add domain group to all client
computers local administrators group. In theory this should greant all AD
users admin rights when they login. However, this does not work, none of the
users get admin rights. This is an old server that has its share of issues,
I've corrected DNS issues, I think, DNS seems to work great now that I have
re-created the forward lookup zone for my domain. I just can't get
permissions straight on the client computers. It also does not seem to be
applying Group policies. I also have a time problem, the clients won't time
sync with the server. So there are also other issues, but does anyone know
how to troubleshoot this? I just need to get the permissions working. There
are no errors in the event log or any other indication of a problem.

Thanks
 
The domain is in 2000 native mode, and the scope of the group is global. All
the users are in the same domain in the Same OU
 
After you log into the server, check the groups in your token with whoami or sectok.

joe
 
I have already been running whoami, and everything looks fine. Is there some
special switch or items I should be checking for?
 
You should be looking for the group you set up in the domain to be in the token
as well as the local administrators group.
 
Back
Top