Page 1 of 1

[RESOLVED] Adding a domain user to a local group when the domain is unreachable.

Published: September 8, 2022 - 5:18 PM
by croquebert
Hello everyone,

Context:
Working remotely without a VPN
WAPT version: 2.2 Enterprise
Server OS: Debian 11
OS administration console: Win10pro
OS package dev station: Win10pro

I want to add domain users who have already logged in to a given machine (cached credentials) to a local group. The machine is joined to the domain.
I use your add_user_to_group function for this.
When the station is able to reach the domain, there is no problem.

When the domain is unreachable, the addition fails with the Windows error code (same if I use call('net localgroup ...')):

Code: Select all

détail de l'erreur: (1355, 'NetUserGetLocalGroups', 'Le domaine spécifié n’existe pas ou n’a pas pu être contacté.')
This addition is a prerequisite for us before sending the VPN configuration to the workstation (and therefore no upstream VPN), precisely to allow remote access to domain resources.

Have you ever encountered this use case? If so, did you solve it (I haven't found much in the Microsoft documentation on this)?


Christophe.

Re: Adding a domain user to a local group when the domain is unreachable.

Published: September 9, 2022 - 11:18 AM
by dcardon
Good morning,

is this something you could try with a

Code: Select all

net localgroup administrateurs NOM_DOMAIN_NETBIOS\nom_utilisateur /add


By correctly entering the NetBIOS name (not the DNS name) of the domain. It seems that if the NetBIOS name is used and the user is preloaded, it works.

Sincerely,

Denis

Re: Adding a domain user to a local group when the domain is unreachable.

Published: September 19, 2022 - 4:16 PM
by dcardon
In the absence of further information, I am closing this topic.

Regards,

Denis