Re: your account is configured to prevent you from using this computer

anonymous_at_discussions.microsoft.com
Date: 12/02/03


Date: Mon, 1 Dec 2003 22:56:56 -0800

You'd asked if I had a registry.pol file. Yes, I do. I
did manage to clear the security file and limit my
auditing to only logon based events, both success and
failure. There was an entry for what I'm describing. It
was event ID 533. Which is idicative of a network
setting...
>-----Original Message-----
>That domain behavior results from groups listed in the
>log on locally and log on over the network user rights
>(XP introduced the two deny versions of these, which
>are not used in a default domain joining).
>
>You have verified that Users group is grant the log on
>locally user right, that the account is in Users, and
that
>there is no group in the Deny local logon user right that
>has as a member the account.
>
>If in the Auditing policies you have login events being
>audited for success and failure, it is totally bizarre
that
>you are not receiving any events in an otherwise
functioning
>security event log.
>
>What are the NTFS settings on the account's profile ?
>Does the account have Full control of its own profile ?
>(above does not align with message reported, but . . .)
>
>Is there a registry.pol file in the folder
>system32\GroupPolicy\User ?
>
>
>--
>Roger Abell
>Microsoft MVP (Windows Server System: Security)
>MCSE (W2k3,W2k,Nt4) MCDBA
><anonymous@discussions.microsoft.com> wrote in message
>news:033401c3b844$7d96fd40$a101280a@phx.gbl...
>> I did verify that the security log is configured
>> correctly. I have tried verifying that with using an
>> incorrect password and I did come up with an event on
the
>> security log.
>>
>> This problem is behavior consistant with a domain
>> evironment where a user is allow to log onto only
specific
>> PCs. Thus the rub, I'm a standalone PC. :-(
>>
>>
>> >-----Original Message-----
>> >Go into Computer Management/Event Viewer/security log
and
>> clear [right click/clear
>> >all events] it to see if it helps. If it does then set
>> your security log to overwrite
>> >events as needed. --- Steve
>> >
>> >
>> >
>> ><anonymous@discussions.microsoft.com> wrote in message
>> >news:023901c3b837$39781930$a101280a@phx.gbl...
>> >> I did try to recreate the account with the same
>> >> memeberships and even tried to create other new
>> accounts,
>> >> all with the same result. I do have logging enabled.
>> That
>> >> was interesting as well, the security log isn't
showing
>> >> anything. Since my son isn't being allowed to log
on,
>> >> it's not coming up with an error such as a wrong
>> password.
>> >>
>> >> Any idea what the deal is?
>> >>
>> >> Toli
>> >> >-----Original Message-----
>> >> >If you define a new limited account (one with group
>> >> >memberships equal to those of your son's problem
>> >> >account) does it show any login issues ?
>> >> >
>> >> >You seem to have covered the bases as far as user
>> rights
>> >> >are concerned.
>> >> >What is showing in the security event log
(assuming you
>> >> >have event logging enabled) ?
>> >> >
>> >> >--
>> >> >Roger Abell
>> >> >Microsoft MVP (Windows Server System: Security)
>> >> >MCSE (W2k3,W2k,Nt4) MCDBA
>> >> >"Toli" <beast@ihug.co.nz> wrote in message
>> >> >news:04de01c3b7ce$f9225a70$a101280a@phx.gbl...
>> >> >> I've run accross an interesting problem. I have
my
>> >> son's
>> >> >> account that's getting the following popup at
log on.
>> >> >>
>> >> >> "your account is configured to prevent you from
using
>> >> >> this computer"
>> >> >>
>> >> >> I'm on a stand alone pc. I dont have him in
the "deny
>> >> >> logon locally" on security policy, nor is he a
member
>> >> of
>> >> >> a group that's affected by that policy. I do
have him
>> >> in
>> >> >> the user's group, which can log on locally. It
seems
>> >> that
>> >> >> only members of the local adminstrators group
can log
>> >> >> onto this PC. He was able to log on recently,
and I
>> >> >> haven't messed with the local group policy.
>> >> >>
>> >> >> Any ideas?
>> >> >>
>> >> >> Thanks
>> >> >
>> >> >
>> >> >.
>> >> >
>> >
>> >
>> >.
>> >
>
>
>.
>



Relevant Pages

  • [EC-SA-01.2003] Windows XP "welcome screen" exposes the names of all the members of the l
    ... logon screen with what is called "Welcome Screen". ... (including the original administrator account, ... Using the "welcome screen" actually disables / ignores the security ...
    (Bugtraq)
  • Re: ATTN : Microsoft - Security Event 529....Second Request for help....
    ... According to the events, the logon ... failure is from the local machine account. ... disconnected from the network. ... Security Event ID 529 is a failure audit for logon/logoff. ...
    (microsoft.public.windows.server.sbs)
  • RE: Event ID 529 on cleint workstation
    ... Security Event ID 529 is a failure audit for logon/logoff. ... "logon events" generate the events on domain controllers for domain account ... The Event 529 was caused by the machine account password not being ... I suggest that you re-join the client to ...
    (microsoft.public.windows.server.sbs)
  • Re: Is it really true that NTFS is secure?
    ... The account Group got put back in the Administrator group again. ... Event Source: Security ... The logon to account: Administrator ...
    (microsoft.public.security)
  • Risks Digest 25.73
    ... German electronic health card system failure ... Risks of the Cloud: Liquid Motors ... Oakland 2010, IEEE Symposium on Security and Privacy, CFP ... A friend's facebook account was hacked recently (a neat little short-term ...
    (comp.risks)