Microsoft KB Archive/253154

{|
 * width="100%"|

HOWTO: Grant a Domain User Account Local Login Privileges on a Windows 2000 Domain Controller

 * }

ID: Q253154

-

The information in this article applies to:


 * Microsoft Windows 2000 Advanced Server
 * Microsoft Windows 2000 Server
 * Microsoft Windows 2000 Professional

-

SUMMARY
This article provides the procedure to grant a domain user rights to log on locally to the domain controller.

MORE INFORMATION
To grant this right to a Windows 2000 domain user you must add that user to the "Log on Locally" policy container. (This procedure assumes that the domain user account already exists.)


 * 1) Click Start, point to Programs, point to Administrative Tools, and select Domain Security Policy.
 * 2) Click Local Policies.
 * 3) Click User Rights Assignments.
 * 4) In the right pane, double-click Log On Locally.
 * 5) In the Security Policy dialog box, click Add.
 * 6) Under Select Users or Groups, type the user name in the lower pane and click OK.
 * 7) In the Security Policy dialog box, click OK.