Aspergillus Posted March 18, 2014 Report post Posted March 18, 2014 Hi m8's. We experience a stange behaviour we do not understand. In Short. - If a User is Member of the Local Group Configmgr- Rempotecontrollusers he can do remotecontrol. - If the same user ist member of an AD-Group and this AD Group is member of the local Configmgr-RemoteuserGroup the User can not do remotecontroll. --------------------------- We have an Active Directory Group (Local Domain Permission Group) and this Group has the "Role Remote Tools operator" in Configmgr. If a User is made Member of this Group he can do remotcontroll only if he has Administrator rights. If we open local Groups now on our Domain Machines there is a Group called Configmgr-RemoteUsers andf in this Group we find our Group AD Group .... If i put the User in this local group directly it works without Admin Rights. if in this local group is only the AD Group in wich the User is.. it does not work. Is this working as designed? Regardas Rolf Quote Share this post Link to post Share on other sites More sharing options...