| Rommel 2003-06-06, 1:23 am |
| I have edited the Default Domain Policy of our Domain
Controller (windows 2000 server). On the Computer
Settings\User Right Assignment\Log On Locally, I change
the value of the local setting to a domain user account
(not a member of the Administrator Group). I do this to
enable me to logon on the server(PDC) as a user without
administrative privilege for security reasons. After this,
I can no longer log even as an Administrator, I can only
log using the account that I have assign to the Log On
Locally. The problem is that I cannot edit the Default
Domain Policy, I can't even create, add and delete GPO's
because all of the command button of the Group Policy Tab
are disabled except the Properties. I have also disable
the Windows Installer, so I can't install Terminal
Services to remotely administer the PDC.I have also tried
the Run as service but it doesn't work also. How can I
resolve this problem? And how can I log on as a user
without administrative privilege?
|