Re: Local admin restricted from IISRESET

From: freeguy (freeguy007-nospam_at_hotmail.com)
Date: 02/29/04


Date: Sun, 29 Feb 2004 17:06:50 GMT

Hello - Thanks for the reply. I just verified that the user I am using is a
member of the local administrator's group (only group listed in "member of"
tab). Also, I verified the local administrator group has full control of
these directories & files &, in desperation, I pushed everyone/full through
those dirs & files. I still get "Access Denied" - this is very
vexing.........

"Steven L Umbach" <n9rou@nospam-comcast.net> wrote in message
news:f%a0c.143272$jk2.571977@attbi_s53...
> Regmon and Filemon should run if they are installed into a directory where
> administrators have at least read/list/execute permissions. Check the
permissions on
> the executables for those two files themselves to see if they have proper
access and
> are not a member of any group that has deny permissions which would
include users and
> the everyone group. Once you get them to run, then of course you can use
them to
> track your other problems. --- Steve
>
>
> "fg" <7@hotmail.com> wrote in message
> news:rI30c.19148$Eh7.4070@newssvr31.news.prodigy.com...
> > Hello - Any assistance on following pproblem will be greatly
appreciated.
> >
> > Our local admin group (and all users in the group - including domain
admin
> > in the group) is restricted from performing certain admin functions such
as
> > running IISRESET - an Access Denied error is thrown. Also, these users
are
> > unable to run debug utilities such as NTREGMON or NTFILEMON (from
> > Sysinternals site).
> >
> > I've pushed local admins - full down through C: - we're looking a reg
> > permissions, but all looks good so far. Any input will be appreciated.
> >
> > Reply to freeguy007-nospam@hotmail.com (remove "-nospam")
> >
> >
>
>



Relevant Pages

  • Re: Changing groups
    ... pleaderb, sue, frank, ed are members of group projectb ... Everyone is a member of group user. ... depending on the file's permissions they can read and write the ... I do this all the time, using Samba. ...
    (Debian-User)
  • Re: How to remove a user from a mail group (Tried to search...)
    ... If you're using Distribution Groups, these cannot show up in any ACLs ... If it is a Security Group, you'll need to figure out the what different ... resources the group could have permissions on. ... I go to "member of" tab. ...
    (microsoft.public.exchange.admin)
  • Re: How to use a Group Distribution list inorder to send and received messages
    ... In the Permissions list, locate Send As, and then click to select the ... permission of the user account that is a member of one of administrative ... groups will be reset to match the ACL of the AdminSDHolder thread. ... Directory domain controller that holds the primary domain controller ...
    (microsoft.public.exchange.admin)
  • Re: How to use a Group Distribution list inorder to send and received messages
    ... In the Permissions list, locate Send As, and then click to select the ... permission of the user account that is a member of one of administrative ... groups will be reset to match the ACL of the AdminSDHolder thread. ... Directory domain controller that holds the primary domain controller ...
    (microsoft.public.exchange.admin)
  • Re: Delegate permission to full control OU (GPO):getting access is denied. Server Operator can do it
    ... must have allow permissions to both for that action. ... >> Yes, the permissions below are checked for MyAdmin, but he is still ... >> I created a copy account named TestMyadmin (domain user only and member ... >> ControlOU group, which has full-control over that OU) and the problem ...
    (microsoft.public.win2000.active_directory)