I made a Windows 7 template, in which I modified the Group Policy with domain admin to add authority to"Allow log on locally","Allow log on through Remote Desktop Services","Access this computer from the network".
But the thing is, I still can't log-on any single one of these Windows 7 Desktops except with Domain Admin. for example, I created an account TEST1 in AD, while failed to log-on these Windows 7, which says"The requested session access is denied".
What are we supposed to do?
You should just add user to a local Remote desktop users group on your guest OS of your vm (compmgmt.msc -> local users and groups -> remote desktop users group) or you could do it with AD group policy. First of all I would try to add 1 user to a local Remote desktop users group on one vm and check if it works.
Just deployed a Windows 8 pool, and the RDP desktop log on failed too.
Pls refer to the screenshot below:
anybody give me a hand? thanks in advance.
Hello, bbmark.
Is this user in Remote desktop users group on this machine? If not - he will not get permission to log on through RDP.
Hi,
You know, I have already deployed the desktop pool. What supposed I should do to add users on the virtual machine?
should I remove the deployed desktop pool then deploy a new one after adding users on template VM?
thanks ![]()
You should just add user to a local Remote desktop users group on your guest OS of your vm (compmgmt.msc -> local users and groups -> remote desktop users group) or you could do it with AD group policy. First of all I would try to add 1 user to a local Remote desktop users group on one vm and check if it works.
thank you Akopylov~ I made it according to your suggestion.:smileylaugh:
So it works? If you need to add many users to local Remote desktop users group on many vms, just use AD group policy "Restricted groups". Create group for example "RDP users", add users to it, then create Group policy object and attach it to OU with your vms. Edit Group policy object, go to Computer Configuration\Windows Settings\Security Settings\Restricted Groups, right click and Add group, find your "RDP users" group and add it. Then edit it and in the pane "This group is a member of" click Add and spell "BUILTIN\Remote Desktop Users" without quotes. Then just make gpupdate on your vms and restart them.
thanks for your patience to walk me through the nitty-gritty. you're so nice.
I've got it.
No problem ![]()
Hm, tell me why dont you use PCoIP protocol? Whats the point to use RDP in View environment?
Actually I deployed both PCoIP and RDP pools. And I can access PCoIP desktop with added user in AD, while failed to RDP desktop. Which made me believe there is something wrong with View before I get your answer.
Ah, so it is just for the test, ok. I would say there is point to use PCoIP in production environment, if there is no special requirements to use RDP in your company.
To to honest, the UX of PCoIP is way better than RDP as far as I can get this perspective from people around me.
Only, I can't figure out why USB3.0 still doesn't support. And it seems only windows 7 support MMR via PCoIP.
