Scheduled Task will not run on Win2K3 Server (Ent Edition)

From: Bill Scherer (anonymous_at_discussions.microsoft.com)
Date: 04/29/04


Date: Thu, 29 Apr 2004 09:40:24 -0700

I have an executable that I can run with no problems when
I am logged onto the server locally or when using Remote
Desktop. However, I receive an error when trying to run
the task using task scheduler.

I created a new Domain Admin account that also has the
right to "log on as a service". Whenever I attempt to run
the task I receive the following error in the Application
Event log:

EVENT ID: 260
Source: <Application I am running>
Error loading Registry information

The Security log shows the following Failure event:

EVENT ID: 560
Source: Security
Category: Object Access
Object Name: BaseNamedObjects\Crypt32LogoffEvent
Image File Name: <The path to the executable I am trying
to run>
Accesses: DELETE, READ_CONTROL, WRITE_DAC, WRITE_OWNER,
Synchronize, Query Event State, Modify Event State
Restricted SID Count: 0

The Domain Admins group is a member of the local
administrators group. The local admin group has full
control on the folders where the application is stored.
The local admin group also has full control on the
Registry key that the application created to store
configuration infomation.

The Scheduled task log shows the following:
"CRL Update.job" (CrlUpdate.exe)
Started 4/29/2004 12:31:38 PM

"CRL Update.job" (CrlUpdate.exe)
Finished 4/29/2004 12:31:38 PM
Result: The task completed with an exit code of (0).

Does anyone have any thoughts as to why this won't work?
I have modified the default file permissions and the
default Registry permissions, but administrators and
System always retain Full Control. I also have Group
Policy being applied on the server from the domain. Is
there a particular User Right that I need to grant to the
account used to run this task?



Relevant Pages

  • Re: Blue screen logging into TS without Admin rights
    ... The domain admin group, is part of the local admin group. ... The local admin group has full rights on the HKLM key in the registry. ...
    (microsoft.public.win2000.termserv.apps)
  • Re: Can you prevent User and Group Admin, from a User in local admin group?
    ... Generally speaking, if you don't want them to have full control of the ... they shouldn't be in the admin group. ... > local admin group. ...
    (microsoft.public.win2000.security)
  • Re: SP1 setup fails. Access is denied
    ... not sure where to find admin group in the root branch, ... > control in the hkey_classes_root branch of the registry. ... >> Windows Server 2003 has been partially updated and may not work properly. ...
    (microsoft.public.windows.server.setup)
  • Re: Smart user removing domain admin group from local admin group
    ... Also note the Restricted Group Policy will clear every existing ... > change the group membership after GPO application, ... > the local admin group, the membership will refresh every time the GPO is ...
    (microsoft.public.win2000.active_directory)
  • Script works / but fails on startup
    ... then add the admin group for that OU to the local admin group on the ... Administrators group is " & strAdminGroup ... 'Check if the user is already a member of the local admin group ...
    (microsoft.public.scripting.vbscript)