Prevent currently logged on user from denying remote desktop access to admin

Posted: 09-10-2004, 05:04 PM
Is there a way - reg tweak, group policy setting - to
prevent a user (not admin) who is currently logged on to
a WinXP SP2 machine from denying remote desktop access to
an administrator? From KB 280828:

The user currently logged on to the remote computer will
receive the following error message:
<Domain or Computer Name>\<username> is trying to connect
to this computer. If you allow, you will be disconnected,
but you can resume later. Do you want to allow this
connection?
If the user clicks No, the remote user will get the
message:
<Domain or Computer Name>\<username> is currently logged
on this computer, and did not allow you to connect.

It seems unreasonable to me that a user can prevent an
admin from logging on to the machine. There's gotta be a
solution -- I've looked and found nothing.

Anyone?

Thanks!
Reply With Quote

Responses to "Prevent currently logged on user from denying remote desktop access to admin"

Bill Sanderson
Guest
Posts: n/a
 
Re: Prevent currently logged on user from denying remote desktop access to admin
Posted: 09-11-2004, 12:22 AM
Submit an MSWISH?
http://register.microsoft.com/mswish/suggestion.asp


"Peter" <anonymous@discussions.microsoft.com> wrote in message
news:9a6a01c4974f$e04b7a70$a501280a@phx.gbl...
> Is there a way - reg tweak, group policy setting - to
> prevent a user (not admin) who is currently logged on to
> a WinXP SP2 machine from denying remote desktop access to
> an administrator? From KB 280828:
>
> The user currently logged on to the remote computer will
> receive the following error message:
> <Domain or Computer Name>\<username> is trying to connect
> to this computer. If you allow, you will be disconnected,
> but you can resume later. Do you want to allow this
> connection?
> If the user clicks No, the remote user will get the
> message:
> <Domain or Computer Name>\<username> is currently logged
> on this computer, and did not allow you to connect.
>
> It seems unreasonable to me that a user can prevent an
> admin from logging on to the machine. There's gotta be a
> solution -- I've looked and found nothing.
>
> Anyone?
>
> Thanks!

Reply With Quote
Guest
Posts: n/a
 
Re: Prevent currently logged on user from denying remote desktop access to admin
Posted: 09-11-2004, 12:34 AM
Thanks Bill, I did just that. Also, I configured the
following setting in the Group Policy:

User Configuration\Administrative Templates\Windows
Components\Terminal Services\"Sets rules for remote
control of Terminal Services user sessions" to Enabled:
Full control without user's permission.

I don't know if that will do the trick (I can't terminal
myself with my current setup) but if I find I've nailed
it I'll post back.

Thanks again.
>-----Original Message-----
>Submit an MSWISH?
>http://register.microsoft.com/mswish/suggestion.asp
>
>
>"Peter" <anonymous@discussions.microsoft.com> wrote in
message
>news:9a6a01c4974f$e04b7a70$a501280a@phx.gbl...
>> Is there a way - reg tweak, group policy setting - to
>> prevent a user (not admin) who is currently logged on
to
>> a WinXP SP2 machine from denying remote desktop access
to
>> an administrator? From KB 280828:
>>
>> The user currently logged on to the remote computer
will
>> receive the following error message:
>> <Domain or Computer Name>\<username> is trying to
connect
>> to this computer. If you allow, you will be
disconnected,
>> but you can resume later. Do you want to allow this
>> connection?
>> If the user clicks No, the remote user will get the
>> message:
>> <Domain or Computer Name>\<username> is currently
logged
>> on this computer, and did not allow you to connect.
>>
>> It seems unreasonable to me that a user can prevent an
>> admin from logging on to the machine. There's gotta be
a
>> solution -- I've looked and found nothing.
>>
>> Anyone?
>>
>> Thanks!
>
>
>.
>
Reply With Quote
Guest
Posts: n/a
 
Re: Prevent currently logged on user from denying remote desktop access to admin
Posted: 09-15-2004, 09:46 PM
Well that sure didn't work: the currently logged on user
(non-admin) can still prevent an admin from logging on
even with that group policy setting enabled. Bummer.
>-----Original Message-----
>Thanks Bill, I did just that. Also, I configured the
>following setting in the Group Policy:
>
>User Configuration\Administrative Templates\Windows
>Components\Terminal Services\"Sets rules for remote
>control of Terminal Services user sessions" to Enabled:
>Full control without user's permission.
>
>I don't know if that will do the trick (I can't terminal
>myself with my current setup) but if I find I've nailed
>it I'll post back.
>
>Thanks again.
>
>>-----Original Message-----
>>Submit an MSWISH?
>>http://register.microsoft.com/mswish/suggestion.asp
>>
>>
>>"Peter" <anonymous@discussions.microsoft.com> wrote in
>message
>>news:9a6a01c4974f$e04b7a70$a501280a@phx.gbl...
>>> Is there a way - reg tweak, group policy setting - to
>>> prevent a user (not admin) who is currently logged on
>to
>>> a WinXP SP2 machine from denying remote desktop
access
>to
>>> an administrator? From KB 280828:
>>>
>>> The user currently logged on to the remote computer
>will
>>> receive the following error message:
>>> <Domain or Computer Name>\<username> is trying to
>connect
>>> to this computer. If you allow, you will be
>disconnected,
>>> but you can resume later. Do you want to allow this
>>> connection?
>>> If the user clicks No, the remote user will get the
>>> message:
>>> <Domain or Computer Name>\<username> is currently
>logged
>>> on this computer, and did not allow you to connect.
>>>
>>> It seems unreasonable to me that a user can prevent an
>>> admin from logging on to the machine. There's gotta
be
>a
>>> solution -- I've looked and found nothing.
>>>
>>> Anyone?
>>>
>>> Thanks!
>>
>>
>>.
>>
>.
>
Reply With Quote
Bill Sanderson
Guest
Posts: n/a
 
Re: Prevent currently logged on user from denying remote desktop access to admin
Posted: 09-16-2004, 04:10 AM
Yeah--I don't think there is a good solution for this one at the moment.
At least I haven't heard anyone saying they had one!

<anonymous@discussions.microsoft.com> wrote in message
news:1c6c01c49b65$231d4720$a601280a@phx.gbl...
> Well that sure didn't work: the currently logged on user
> (non-admin) can still prevent an admin from logging on
> even with that group policy setting enabled. Bummer.
>
>>-----Original Message-----
>>Thanks Bill, I did just that. Also, I configured the
>>following setting in the Group Policy:
>>
>>User Configuration\Administrative Templates\Windows
>>Components\Terminal Services\"Sets rules for remote
>>control of Terminal Services user sessions" to Enabled:
>>Full control without user's permission.
>>
>>I don't know if that will do the trick (I can't terminal
>>myself with my current setup) but if I find I've nailed
>>it I'll post back.
>>
>>Thanks again.
>>
>>>-----Original Message-----
>>>Submit an MSWISH?
>>>http://register.microsoft.com/mswish/suggestion.asp
>>>
>>>
>>>"Peter" <anonymous@discussions.microsoft.com> wrote in
>>message
>>>news:9a6a01c4974f$e04b7a70$a501280a@phx.gbl.. .
>>>> Is there a way - reg tweak, group policy setting - to
>>>> prevent a user (not admin) who is currently logged on
>>to
>>>> a WinXP SP2 machine from denying remote desktop
> access
>>to
>>>> an administrator? From KB 280828:
>>>>
>>>> The user currently logged on to the remote computer
>>will
>>>> receive the following error message:
>>>> <Domain or Computer Name>\<username> is trying to
>>connect
>>>> to this computer. If you allow, you will be
>>disconnected,
>>>> but you can resume later. Do you want to allow this
>>>> connection?
>>>> If the user clicks No, the remote user will get the
>>>> message:
>>>> <Domain or Computer Name>\<username> is currently
>>logged
>>>> on this computer, and did not allow you to connect.
>>>>
>>>> It seems unreasonable to me that a user can prevent an
>>>> admin from logging on to the machine. There's gotta
> be
>>a
>>>> solution -- I've looked and found nothing.
>>>>
>>>> Anyone?
>>>>
>>>> Thanks!
>>>
>>>
>>>.
>>>
>>.
>>

Reply With Quote
Jeffrey Randow (MVP)
Guest
Posts: n/a
 
Re: Prevent currently logged on user from denying remote desktop access to admin
Posted: 09-17-2004, 05:11 AM
Disable Fast User Switching... Then it takes an admin to override a
user login...

On Wed, 15 Sep 2004 23:10:08 -0400, "Bill Sanderson"
<Bill_Sanderson@msn.com.plugh.org> wrote:
>Yeah--I don't think there is a good solution for this one at the moment.
>At least I haven't heard anyone saying they had one!
>
><anonymous@discussions.microsoft.com> wrote in message
>news:1c6c01c49b65$231d4720$a601280a@phx.gbl...
>> Well that sure didn't work: the currently logged on user
>> (non-admin) can still prevent an admin from logging on
>> even with that group policy setting enabled. Bummer.
>>
>>>-----Original Message-----
>>>Thanks Bill, I did just that. Also, I configured the
>>>following setting in the Group Policy:
>>>
>>>User Configuration\Administrative Templates\Windows
>>>Components\Terminal Services\"Sets rules for remote
>>>control of Terminal Services user sessions" to Enabled:
>>>Full control without user's permission.
>>>
>>>I don't know if that will do the trick (I can't terminal
>>>myself with my current setup) but if I find I've nailed
>>>it I'll post back.
>>>
>>>Thanks again.
>>>
>>>>-----Original Message-----
>>>>Submit an MSWISH?
>>>>http://register.microsoft.com/mswish/suggestion.asp
>>>>
>>>>
>>>>"Peter" <anonymous@discussions.microsoft.com> wrote in
>>>message
>>>>news:9a6a01c4974f$e04b7a70$a501280a@phx.gbl. ..
>>>>> Is there a way - reg tweak, group policy setting - to
>>>>> prevent a user (not admin) who is currently logged on
>>>to
>>>>> a WinXP SP2 machine from denying remote desktop
>> access
>>>to
>>>>> an administrator? From KB 280828:
>>>>>
>>>>> The user currently logged on to the remote computer
>>>will
>>>>> receive the following error message:
>>>>> <Domain or Computer Name>\<username> is trying to
>>>connect
>>>>> to this computer. If you allow, you will be
>>>disconnected,
>>>>> but you can resume later. Do you want to allow this
>>>>> connection?
>>>>> If the user clicks No, the remote user will get the
>>>>> message:
>>>>> <Domain or Computer Name>\<username> is currently
>>>logged
>>>>> on this computer, and did not allow you to connect.
>>>>>
>>>>> It seems unreasonable to me that a user can prevent an
>>>>> admin from logging on to the machine. There's gotta
>> be
>>>a
>>>>> solution -- I've looked and found nothing.
>>>>>
>>>>> Anyone?
>>>>>
>>>>> Thanks!
>>>>
>>>>
>>>>.
>>>>
>>>.
>>>
>
Reply With Quote
 
LinkBack Thread Tools Display Modes
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
With Windows Remote Desktop can I have one user logged on the physical computer and one with remote? Guest Windows NT/2000/XP 0 04-11-2008 07:17 AM
Can connect Vista laptop to XP Desktop ONLY if not logged on as Admin Ramkumar Ramaswamy Windows Vista Networking & Sharing 5 11-28-2007 04:46 PM
Cant find my standard user account files when logged in as Admin?? DarFromVa Windows Vista Administration 2 10-11-2007 05:10 AM
Remote Desktop - Able to have one user logged in locally and one user via remote desktop? Paul Murdock Windows Vista Networking & Sharing 3 10-20-2006 10:54 AM
Remote Desktop suddenly kicking off logged in user David Holcomb Windows XP Work Remotely 1 04-26-2004 12:19 PM


1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90