Iinteractive logon equates to the "logon locally" right within the user
rights assignment section of a group policy object (computer configuration
- windows settings - security settings - local policies - user rights
assignment). Did someone move the computer accounts out of one
container into another within AD Users and Computers? Were any group
policy objects changed? Something apparently changed within the
environment, but the details are not apparent from your description.
Listed below are two articles that include the error you are seeing, but
they will probably not give you additional information on root cause.
276580 Non-Domain Users Cannot Log On Locally or Interactively to Domain
Members
http://support.microsoft.com/?id=276580
276590 Error Message: The Local Policy of This System Does Not Permit You to
http://support.microsoft.com/?id=276590
David Pharr, (e-mail address removed)
This posting is provided "AS IS" with no warranties, and confers no rights.
--------------------
| Content-Class: urn:content-classes:message
| From: "Erik Cominolli" <
[email protected]>
| Sender: "Erik Cominolli" <
[email protected]>
| Subject: Logon interactively
| Date: Mon, 15 Dec 2003 11:25:56 -0800
| Lines: 7
| Message-ID: <
[email protected]>
| MIME-Version: 1.0
| Content-Type: text/plain;
| charset="iso-8859-1"
| Content-Transfer-Encoding: 7bit
| X-Newsreader: Microsoft CDO for Windows 2000
| X-MIMEOLE: Produced By Microsoft MimeOLE V5.50.4910.0300
| thread-index: AcPDQUMDWbb2p/i/Q3CFzVy0C8z3ZA==
| Newsgroups: microsoft.public.win2000.active_directory
| Path: cpmsftngxa07.phx.gbl
| Xref: cpmsftngxa07.phx.gbl microsoft.public.win2000.active_directory:59473
| NNTP-Posting-Host: tk2msftngxa12.phx.gbl 10.40.1.164
| X-Tomcat-NG: microsoft.public.win2000.active_directory
|
| Randomly, PC's that have been part of my domain fo a long
| period of time are getting errors while logging in. It
| tells them that the local policy does not permit them to
| logon interactivly. These machines have been fine and I
| don't believe that anything has changed. I solve the
| problem by adding the user back to the PC but it's
| annoying. Any ideas??
|