The users need _logon locallly_ permission in the User Administrator
application. I created a group for this purpose. That way one can grant or
revoke permission for this service by merely adding or removing the group.
Also makes it real easy to see who has this permission. BTW, I'm not
surprised you didn't know this. This is very poorly documented.
Johannes Kauppi <johanne...@hut.fi> wrote in message
news:#uDWANde#GA....@cppssbbsa02.microsoft.com...