|
Question : Access a SBS 2003 remotely via Remote Desktop gives a Logon Error.
|
|
I have tried everything to remote into this server. I checked all the permissions and they are setup correctly. I have tried logging in as other users but it doesn't work also. I try to logon via Remote Desktop and I get the same message:
Logon Message: To logon to this remote computer, you must have Terminal Server User Access Permissions on this computer.
I try logging in as administrator so this should not be an issue.
Please help.
|
|
Answer : Access a SBS 2003 remotely via Remote Desktop gives a Logon Error.
|
|
All 2003 servers have built-in remote desktop (terminal server) access installed an enabled by default. This is administration mode, allows 2 remote users and 1 console, and does not require any additional licenses.
Non Small Business Server and Web versions also have to ability to install full terminal services for an unlimited number of users. This however also requires setting up licensing services and buying CAL's (Client Access Licenses) for all users/devices. If you do not have these licenses, verify Terminal services has not been installed by going to Add remove Programs / Windows components. If checked, you can un-check it and terminal server licensing to un-install. This will still allow remote access for 2 users.
However there can be other reasons you cannot connect. Have a look at the following check list: 1-try connecting using the IP of the remote computer not the computer name 2-"allow users to connect remotely to this computer" must be enabled 3-you must be a member of the remote desktop users group of the local machine (administrators are by default) 4-if the workstation is a member of a server 2000/2003 domain you will have one of the 2 following check boxes, depending on the version, on the "Terminal Services Profile" of the users profile in Active Directory. Make sure it is checked appropriately. "Deny the user permission to log on to any terminal server", or "Allow Logon to Terminal Server" 5-if XP SP2 or Server 2003 SP1 the firewall needs to be configured to allow remote connections ( I would disable for now for troubleshooting purposes) 6-makesure any other software firewalls are disabled as well (for test purposes), including Internet security suites. Symantec's sometimes needs to be uninstalled or if using Symantec Antivirus some versions have "Internet Worm Protection" which can block Remote Desktop. Try disabling that as well. 7-Verify the Remote Desktop User group has the rights to log on using Terminal Services. Go to Control Panel | Administrative tools | Local Security Policy | Local Policies | User Rights Assignments ...make sure Remote Desktop Users is included in "allow logon through Terminal Services" 8-The terminal Services service must be running If you have access to the remote machine make sure it is "listening" for your connection. To do so at a command line enter (substitute port # if not using default 3389): netstat -an |find "3389" You should get the following result: TCP 0.0.0.0:3389 0.0.0.0:0 listening If not go to Start | Run | services.msc and see if Terminal Services is started and set to automatic 9-Several Windows updates require that the server be rebooted twice in order for terminal services to be re activated after the update is installed 10-There are several known issues with SP2 and Remote Desktop access. See: http://www.lan-2-wan.com/2003-SP2.htm
|
|
|
|