Skip to content

TechDirectArchive

Hands-on IT, Cloud, Security & DevOps Insights

  • Home
  • About
  • Advertise With US
  • Reviews
  • Contact
  • Toggle search form
Home » Windows Server » How to fix this computer is a domain controller: The snap-in cannot be used on a domain controller
  • office365family
    How to Cancel Office 365 Family Subscription JIRA|Confluence|Apps
  • windows 10 technical preview windows 10 logo microsoft 97543 1920x1080
    How to Remove the All Apps Option from Windows Start Menu via GPO /Registry Windows
  • S3 Bucket 1
    How to delete AWS S3 Bucket and Objects via  AWS CLI from Linux AWS/Azure/OpenShift
  • Microaoft Edge
    Bing AI-Powered Copilot: How to install Microsoft Edge on macOS Network | Monitoring
  • Expired Evaluation Configuration Manager to Full Version
    Upgrade Expired Evaluation Configuration Manager to Full Version Windows Server
  • ADO Self hosted agent
    How to Create Self-Hosted Agent for Azure DevOps Pipelines Automation
  • FEATUREIMAGE
    How to work with Azure Cognitive Service AWS/Azure/OpenShift
  • xyxc
    How to link a removable media to a Deployment Share: Replicate Deployment share to a removable device Windows Server

How to fix this computer is a domain controller: The snap-in cannot be used on a domain controller

Posted on 06/10/202126/05/2023 Christian By Christian No Comments on How to fix this computer is a domain controller: The snap-in cannot be used on a domain controller
Screenshot-2021-10-07-at-00.00.32

Remote Desktop Protocol (RDP) is a special network protocol that allows a user to establish a connection between two computers. For every connection made to a remote PC, the RDP client in Windows (mstsc.exe) saves the computer name or an IP Address and also the username used to log on. See the following guide on how to remove saved RDP credentials in Windows 10. Please see this article on how How to fix this computer is a domain controller: The snap-in cannot be used on a domain controller, domain accounts are managed by ADUC snap-in. Please see how to fix “this snap-in performed a non-valid operation and has been unloaded: To continue using this snap-in restart MMC or try loading the snap-in again.

While creating this guide, I had to simulate this error by launching the Computer Management console. This can also be done via the following shortcut. For other topics on RDP, see the following hyperlinks: How to allow saved credentials for RDP connection, how to remove saved RDP credentials entries in Windows 10, How to prevent the saving of Remote Desktop Credentials in Windows, Remote Desktop can not find the computer FQDN and this might mean that FQDN does not belong to the specified network, and how to disconnect a Remote Desktop User.

- Press Winkey + R to open Run (or just search for it from the search window).
- Type in lusrmgr.msc and press Enter. This is how you can reproduce this error on a Domain Controller.

Reason for the error

In an Active Directory environment, you can use local users and groups available via the Computer Management (MMC console) to enable remote Desktop Connection. The Domain Controller uses the built-in domain group Remote Desktop Users (located in the Builtin container).

You can manage this group from the ADUC console or from the command prompt to manage your Domain Controller. See this guide for this error “The connection was denied because the user is not authorized for remote Login“, and how to enable Remote Desktop Connection on Windows 11 for non-administrators or selected users.

Screenshot-2021-10-06-at-23.41.06

Please see how to fix “Allow RDP access for non administrators: Add User to Remote Desktop Users Group in Active Directory“, and how to save and stop modification to Microsoft Management Console.

Resolution to “The snap-in cannot be used on a domain controller”

To manage remote users on a DC, launch the Server Manager

- Click on Tools,
- And then on Active Directory Users and Computers
Screenshot-2021-10-06-at-23.47.01

This will open the Active Directory Users and Computers snap-in. Double-click on the Remote Desktop users as shown below.

Below are some related guides: How to add a second Domain Controller to your environment. How to Setup a Domain Controller and how to synchronize your Domain Controller with an external time source in Windows.

Screenshot-2021-10-06-at-23.47.48

This will open up the Remote Desktop Users Properties window. Navigate to the Members tab and click on Add to add users.

Screenshot-2021-10-06-at-23.48.14

Enter the user’s name and click on Check names as shown below.

Screenshot-2021-10-06-at-23.48.40

As you can see, the object is presented in AD. Click on Ok to close the Remote Desktop Users Properties window. You will have to click on OK again.

Screenshot-2021-10-06-at-23.49.12

This is how you can add users to the Remote Desktop Group on a DC. You may also have to “Allow Log on through Remote Desktop Services” on a DC if not enabled already.

If you do not have a real need to connect to your DC via RDP. Please use the Remote Server Administration Tools. See these guides on how to install RSAT on Windows Server. And how to install RSAT on Windows 10 via Windows features.

I hope you found this blog post helpful on how to fix this computer is a domain controller: The snap-in cannot be used on a domain controller. If you have any questions, please let me know in the comment session

Rate this post

Thank you for reading this post. Kindly share it with others.

  • Click to share on X (Opens in new window) X
  • Click to share on Reddit (Opens in new window) Reddit
  • Click to share on LinkedIn (Opens in new window) LinkedIn
  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on Pinterest (Opens in new window) Pinterest
  • Click to share on Tumblr (Opens in new window) Tumblr
  • Click to share on Telegram (Opens in new window) Telegram
  • Click to share on WhatsApp (Opens in new window) WhatsApp
  • Click to share on Pocket (Opens in new window) Pocket
  • Click to share on Mastodon (Opens in new window) Mastodon
  • Click to share on Bluesky (Opens in new window) Bluesky
  • Click to share on Threads (Opens in new window) Threads
  • Click to share on Nextdoor (Opens in new window) Nextdoor
Windows Server Tags:DC, Domain, Domain Controller, Microsoft Windows, RDP, Remote Desktop, Remote Server Administration Tools, RemoteConnection, Windows 10, Windows Server 2016

Post navigation

Previous Post: The connection was denied because the user is not authorized for remote Login: Enable Remote Desktop Connection on Windows 11 for non-administrators or selected users
Next Post: Allow RDP access for non administrators: Add User to Remote Desktop Users Group in Active Directory

Related Posts

  • Server Manager
    How to reinstall Server Manager and disable Server Manager at startup for all users and login users Windows Server
  • asdfgh
    All Group Policies (GPO) available to configure Microsoft Edge settings Windows Server
  • Grant Non Domain Admin Privileges to Manage Workstation
    Grant Non-Domain Admin Privileges to Manage Workstation Windows
  • certificate import and export on windows
    Export and Convert Private Keys to .PEM Format in Windows Windows
  • article 1280x720.192a2586
    Windows Deployment Services: How to setup and install WDS role Windows Server
  • hero windowsadmincenter
    How to set up Windows Admin Center on a Windows Server Windows Server

More Related Articles

Server Manager How to reinstall Server Manager and disable Server Manager at startup for all users and login users Windows Server
asdfgh All Group Policies (GPO) available to configure Microsoft Edge settings Windows Server
Grant Non Domain Admin Privileges to Manage Workstation Grant Non-Domain Admin Privileges to Manage Workstation Windows
certificate import and export on windows Export and Convert Private Keys to .PEM Format in Windows Windows
article 1280x720.192a2586 Windows Deployment Services: How to setup and install WDS role Windows Server
hero windowsadmincenter How to set up Windows Admin Center on a Windows Server Windows Server

Leave a Reply Cancel reply

You must be logged in to post a comment.

Microsoft MVP

VEEAMLEGEND

vexpert-badge-stars-5

Virtual Background

GoogleNews

Categories

veeaam100

sysadmin top30a

  • office365family
    How to Cancel Office 365 Family Subscription JIRA|Confluence|Apps
  • windows 10 technical preview windows 10 logo microsoft 97543 1920x1080
    How to Remove the All Apps Option from Windows Start Menu via GPO /Registry Windows
  • S3 Bucket 1
    How to delete AWS S3 Bucket and Objects via  AWS CLI from Linux AWS/Azure/OpenShift
  • Microaoft Edge
    Bing AI-Powered Copilot: How to install Microsoft Edge on macOS Network | Monitoring
  • Expired Evaluation Configuration Manager to Full Version
    Upgrade Expired Evaluation Configuration Manager to Full Version Windows Server
  • ADO Self hosted agent
    How to Create Self-Hosted Agent for Azure DevOps Pipelines Automation
  • FEATUREIMAGE
    How to work with Azure Cognitive Service AWS/Azure/OpenShift
  • xyxc
    How to link a removable media to a Deployment Share: Replicate Deployment share to a removable device Windows Server

Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Join 1,841 other subscribers
  • RSS - Posts
  • RSS - Comments
  • About
  • Authors
  • Write for us
  • Advertise with us
  • General Terms and Conditions
  • Privacy policy
  • Feedly
  • Telegram
  • Youtube
  • Facebook
  • Instagram
  • LinkedIn
  • Tumblr
  • Pinterest
  • Twitter
  • mastodon

Tags

AWS Azure Bitlocker Microsoft Windows PowerShell WDS Windows 10 Windows 11 Windows Deployment Services Windows Server 2016

Copyright © 2025 TechDirectArchive

 

Loading Comments...
 

You must be logged in to post a comment.