Registrations are now open. Join us today!
There is still a lot of work to do on the wiki yet! More information about editing can be found here.
Already have an account?

Microsoft KB Archive/253154

From BetaArchive Wiki

HOWTO: Grant a Domain User Account Local Login Privileges on a Windows 2000 Domain Controller

ID: Q253154

The information in this article applies to:

  • Microsoft Windows 2000 Advanced Server
  • Microsoft Windows 2000 Server
  • Microsoft Windows 2000 Professional


This article provides the procedure to grant a domain user rights to log on locally to the domain controller.


To grant this right to a Windows 2000 domain user you must add that user to the "Log on Locally" policy container. (This procedure assumes that the domain user account already exists.)

  1. Click Start, point to Programs, point to Administrative Tools, and select Domain Security Policy.
  2. Click Local Policies.
  3. Click User Rights Assignments.
  4. In the right pane, double-click Log On Locally.
  5. In the Security Policy dialog box, click Add.
  6. Under Select Users or Groups, type the user name in the lower pane and click OK.
  7. In the Security Policy dialog box, click OK.


This article is useful to address the problem noted in

Q245715 User Account Cannot Use Outlook Web Access from Domain Controller

Additional query words:

Keywords : kbWinOS2000 kbDSupport
Version : WINDOWS:
Platform : WINDOWS
Issue type : kbhowto
Technology : kbvcSearch

Last Reviewed: August 26, 2000
© 2000 Microsoft Corporation. All rights reserved. Terms of Use.