Unifi USG VPN/RDP Issue

Velvis

Well-Known Member
Reaction score
47
Location
Medfield, MA
Client is getting a:

the connection was denied because the user account not authorized for remote login

error all of a sudden trying to connect to their desktop.

Never had the issue before. Any ideas?

 
Did someone change permissions on the users who were allowed to RDP?

If the same user tried to RDP from the local network excluding the VPN does it work?

Sent from my SM-G870W using Tapatalk
 
so do you want us to guess as to the setup and what you've tried and what you've confirmed yourself?
 
The user was previously an admin and is now a standard user perhaps?

In most cases RD access for admin users is implied. Standard users must be explicitly granted RD access. How that's done/checked depends on whether we're talking about a domain, an RDSH (TS) or a simple RD session into a non-domain PC.
 
The user was previously an admin and is now a standard user perhaps?

In most cases RD access for admin users is implied. Standard users must be explicitly granted RD access. How that's done/checked depends on whether we're talking about a domain, an RDSH (TS) or a simple RD session into a non-domain PC.
I did recently change some users to standard accounts. It's a non-domain environment. Where would the setting be to allow this?

Sent from my LM-Q710.FG using Tapatalk
 
I did recently change some users to standard accounts. It's a non-domain environment. Where would the setting be to allow this?

So there's something you can point your finger at...this is a Windows account permission issue, not a VPN issue.

Couple of areas...
One area is..when you right click "Computer"..got to properties...Remote Settings...that Remote tab, down low...the radio button choices, checkbox, and Select Users. Note under each users login/profile..under that box, may or may not have "username already has access". If not..Add.
Another section you can do this...when you right click "Computer" and select "Manage"...drill into the Local Users and Groups...(only on Windows Pro).
 
The error means exactly what it says on the tin... the user isn't authorized.

Crack open the Computer Management console on the machine the user is connecting to, open local users and groups, double click Remote Desktop Users, and add the user in question to the list.

If you don't have users and groups on that machine, it's a Home box, and can't be the host of an RDP service anyway which means it never worked.
 
Back
Top