我正在尝试自动启动一项服务但使用特定凭据登录。
以下是一个例子:
具体的服务并不重要,因为问题发生在任何服务上,也就是说我得到了Access Denied
。
我知道用户必须具有以服务身份登录的权限。这需要转到编辑器Local Security Policy
,secpol.msc
然后按照此屏幕截图中所示的路径进行操作。我确实将特定用户添加到列表中。系统随后重新启动,只是因为,我仍然得到Access Denied
。
我确实尝试[Process Monitor][3]
过从 systernals 下载并搜索Access Denied
,但也许对于该工具的专家来说会有所帮助,但对我来说,这是一个死路。
我以为是某种权限问题,但Local Security Policy
应该解决这个问题。该用户是该 PC 上具有管理权限的域用户。
有什么想法吗?
更新
有趣的是,在左边,我看到了用户,但在右边,没有定义,而且我以前从未听说过 rsop。
GPUpdate/Force
Computer policy could not be updated successfully. The following errors were encountered:
The processing of Group Policy failed because of lack of network connectivity to a domain controller. This may be a transient condition. A success message would be generated once the machine gets connected to the domain controller and Group Policy has successfully processed. If you do not see a success message for several hours, then contact your administrator.
User Policy could not be updated successfully. The following errors were encountered:
HTML 报告结果:
The processing of Group Policy failed because of lack of network connectivity to a domain controller. This may be a transient condition. A success message would be generated once the machine gets connected to the domain controller and Group Policy has successfully processed. If you do not see a success message for several hours, then contact your administrator.
我还收到了:
(7326) Group Policy failed to discover the Domain Controller details in 782 milliseconds.
Error Codes: 7017, 1006, 7017, 7326