Re: No admin login



A different machine is impossible. It has Windows server 2008 on it, every
other server we have is Win 2003.


"Pegasus [MVP]" <news@xxxxxxxxxxxxx> wrote in message
news:OumokY$7JHA.1764@xxxxxxxxxxxxxxxxxxxxxxx
Have you considered the possibility that you might be addressing a
different machine with your RDP session than the one you think? One way to
make sure is to start an RDP session, then using a third-party eject
command to open and close the CD tray a few times.

I suppose you've already tried the fixer of all things: Reboot the
machine.


"Zebby" <someone@nowhere> wrote in message
news:eGC$GG$7JHA.3804@xxxxxxxxxxxxxxxxxxxxxxx
Thanks for the replies!

Keyboard and regional settings are correct for my location. Tried with 2
know good keyboards.
The account I'm using is the built in administrator account. I've checked
it's membership and it is a member of the right groups, (administrators,
domain admins, enterprise admins, remote desktop users, group policy
creator owners, schema admins, domain users)
There is no group policy set on the machine other than the 2 default
domain ones created by the OS on install. I can see that MS has set some
restrictions by default, (password length, complexity etc) but there is
nothing set to stop the administrator account logging on locally.
As a test I disabled these policies but I still can't log on locally!

I'm really stumped by this! I thought I knew most of the dirty little
secrets that Windows could use to pull the rug from under your feet but I
guess not!


"Richard Mueller [MVP]" <rlmueller-nospam@xxxxxxxxxxxxxxxxxxxx> wrote in
message news:e3frCT37JHA.1568@xxxxxxxxxxxxxxxxxxxxxxx

"Zebby" <someone@nowhere> wrote in message
news:uSWD2n27JHA.5476@xxxxxxxxxxxxxxxxxxxxxxx
Testing a copy of Server 2008 Std...

If I go to the machine and try to login I get "The username or password
is incorrect"
If I use EXACTLY the same username and password in a remote desktop
session, I can log in.

The login I'm trying is the administrator account, I can see that this
is a member of all the right security groups, what the hell is going
on?


It's also possible a policy denies logging on locally. On servers this
right is restricted to members of domain groups Administrators, Account
Operators, Backup Operators, Print Operators, and Server Operators. Are
you logging into the domain with an account that is a member of the
domain group Administrators or Domain Admins?

--
Richard Mueller
MVP Directory Services
Hilltop Lab - http://www.rlmueller.net
--








.



Relevant Pages

  • Re: No admin login
    ... machine with your RDP session than the one you think? ... The account I'm using is the built in administrator account. ... it's membership and it is a member of the right groups, (administrators, ... domain group Administrators or Domain Admins? ...
    (microsoft.public.windows.server.general)
  • Re: No admin login
    ... different machine with your RDP session than the one you think? ... The account I'm using is the built in administrator account. ... it's membership and it is a member of the right groups, (administrators, ... domain group Administrators or Domain Admins? ...
    (microsoft.public.windows.server.general)
  • Re: Privilege Levels
    ... First double check if the administrator account is a member of the local ... Add the "Group Policy Object Editor" ... >I have a Windows 2003 Server whose only role is a File Server (it's ...
    (microsoft.public.windows.server.general)
  • Re: Publishing Windows Server 2003 Certificates in Win2k Active Directory
    ... The administrator account is special in that the CA cannot write to the ... > I've installed an Enterprise CA on a Windows Server 2003 (RTM, ... > The CA computer account is a member of the "Cert Publishers" group. ... > Certificate Services could not publish a Certificate for request 10 to the ...
    (microsoft.public.win2000.security)
  • Cannot access Event Logs, Access Denied
    ... Make sure the Administrator account you are using is not ... a member of the builtin\guest group on the server. ... account is member of that group or a member of any other ...
    (microsoft.public.windows.server.general)