Skip to content

TechDirectArchive

Hands-on IT, Cloud, Security & DevOps Insights

  • Home
  • About
  • Advertise With US
  • Reviews
  • Contact
  • Toggle search form
Home » Windows Server » How to fix this computer is a domain controller: The snap-in cannot be used on a domain controller
  • Vmware workstation player and devicecredential guard not compatible
    Fix VMware Workstation and Credential Guard are not compatible Virtualization
  • mdm
    Delete AssignedAccess applied via MDM WMI bridge Provider Windows
  • azure sql featured image
    How to delete ADFS Windows Internal Database without access credentials Oracle/MSSQL/MySQL
  • hero azure activedirectory
    How to add and verify a custom domain name to Azure Active Directory AWS/Azure/OpenShift
  • cimInstance wmi
    How to fix Get-CimInstance Access PermissionDenied Windows
  • screenshot 2020 04 07 at 02.14.53
    SSH and Telnet on Cisco ASA 5505: Quick Setup Guide Network | Monitoring
  • rrd
    How to uninstall the DriveLock Agent from your device Security | Vulnerability Scans and Assessment
  • git pull error
    Failed to pull image with the policy “always” error from the daemon Version Control System

How to fix this computer is a domain controller: The snap-in cannot be used on a domain controller

Posted on 06/10/202126/05/2023 Christian By Christian No Comments on How to fix this computer is a domain controller: The snap-in cannot be used on a domain controller
Screenshot-2021-10-07-at-00.00.32

Remote Desktop Protocol (RDP) is a special network protocol that allows a user to establish a connection between two computers. For every connection made to a remote PC, the RDP client in Windows (mstsc.exe) saves the computer name or an IP Address and also the username used to log on. See the following guide on how to remove saved RDP credentials in Windows 10. Please see this article on how How to fix this computer is a domain controller: The snap-in cannot be used on a domain controller, domain accounts are managed by ADUC snap-in. Please see how to fix “this snap-in performed a non-valid operation and has been unloaded: To continue using this snap-in restart MMC or try loading the snap-in again.

While creating this guide, I had to simulate this error by launching the Computer Management console. This can also be done via the following shortcut. For other topics on RDP, see the following hyperlinks: How to allow saved credentials for RDP connection, how to remove saved RDP credentials entries in Windows 10, How to prevent the saving of Remote Desktop Credentials in Windows, Remote Desktop can not find the computer FQDN and this might mean that FQDN does not belong to the specified network, and how to disconnect a Remote Desktop User.

- Press Winkey + R to open Run (or just search for it from the search window).
- Type in lusrmgr.msc and press Enter. This is how you can reproduce this error on a Domain Controller.

Reason for the error

In an Active Directory environment, you can use local users and groups available via the Computer Management (MMC console) to enable remote Desktop Connection. The Domain Controller uses the built-in domain group Remote Desktop Users (located in the Builtin container).

You can manage this group from the ADUC console or from the command prompt to manage your Domain Controller. See this guide for this error “The connection was denied because the user is not authorized for remote Login“, and how to enable Remote Desktop Connection on Windows 11 for non-administrators or selected users.

Screenshot-2021-10-06-at-23.41.06

Please see how to fix “Allow RDP access for non administrators: Add User to Remote Desktop Users Group in Active Directory“, and how to save and stop modification to Microsoft Management Console.

Resolution to “The snap-in cannot be used on a domain controller”

To manage remote users on a DC, launch the Server Manager

- Click on Tools,
- And then on Active Directory Users and Computers
Screenshot-2021-10-06-at-23.47.01

This will open the Active Directory Users and Computers snap-in. Double-click on the Remote Desktop users as shown below.

Below are some related guides: How to add a second Domain Controller to your environment. How to Setup a Domain Controller and how to synchronize your Domain Controller with an external time source in Windows.

Screenshot-2021-10-06-at-23.47.48

This will open up the Remote Desktop Users Properties window. Navigate to the Members tab and click on Add to add users.

Screenshot-2021-10-06-at-23.48.14

Enter the user’s name and click on Check names as shown below.

Screenshot-2021-10-06-at-23.48.40

As you can see, the object is presented in AD. Click on Ok to close the Remote Desktop Users Properties window. You will have to click on OK again.

Screenshot-2021-10-06-at-23.49.12

This is how you can add users to the Remote Desktop Group on a DC. You may also have to “Allow Log on through Remote Desktop Services” on a DC if not enabled already.

If you do not have a real need to connect to your DC via RDP. Please use the Remote Server Administration Tools. See these guides on how to install RSAT on Windows Server. And how to install RSAT on Windows 10 via Windows features.

I hope you found this blog post helpful on how to fix this computer is a domain controller: The snap-in cannot be used on a domain controller. If you have any questions, please let me know in the comment session

Rate this post

Thank you for reading this post. Kindly share it with others.

  • Click to share on X (Opens in new window) X
  • Click to share on Reddit (Opens in new window) Reddit
  • Click to share on LinkedIn (Opens in new window) LinkedIn
  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on Pinterest (Opens in new window) Pinterest
  • Click to share on Tumblr (Opens in new window) Tumblr
  • Click to share on Telegram (Opens in new window) Telegram
  • Click to share on WhatsApp (Opens in new window) WhatsApp
  • Click to share on Pocket (Opens in new window) Pocket
  • Click to share on Mastodon (Opens in new window) Mastodon
  • Click to share on Bluesky (Opens in new window) Bluesky
  • Click to share on Threads (Opens in new window) Threads
  • Click to share on Nextdoor (Opens in new window) Nextdoor
Windows Server Tags:DC, Domain, Domain Controller, Microsoft Windows, RDP, Remote Desktop, Remote Server Administration Tools, RemoteConnection, Windows 10, Windows Server 2016

Post navigation

Previous Post: The connection was denied because the user is not authorized for remote Login: Enable Remote Desktop Connection on Windows 11 for non-administrators or selected users
Next Post: Allow RDP access for non administrators: Add User to Remote Desktop Users Group in Active Directory

Related Posts

  • backupvssnapshot
    Virtual Machine Snapshot vs Backup Version Control System
  • troubleshooting Active Directory Replication
    How to troubleshoot Active Directory Replication issues Network | Monitoring
  • Featured image wifipass
    Find saved Wi-Fi Passwords in Windows 10 and 11 Network | Monitoring
  • 1 kajkbmlyehn0inifwrh 8w
    How to install Kerberos packages via Cygwin in Windows Windows Server
  • screenshot 2020 02 08 at 15.53.31
    Enable Automatic Logon on Windows Windows Server
  • wac
    Fix Windows Admin Center cannot be reached Windows

More Related Articles

backupvssnapshot Virtual Machine Snapshot vs Backup Version Control System
troubleshooting Active Directory Replication How to troubleshoot Active Directory Replication issues Network | Monitoring
Featured image wifipass Find saved Wi-Fi Passwords in Windows 10 and 11 Network | Monitoring
1 kajkbmlyehn0inifwrh 8w How to install Kerberos packages via Cygwin in Windows Windows Server
screenshot 2020 02 08 at 15.53.31 Enable Automatic Logon on Windows Windows Server
wac Fix Windows Admin Center cannot be reached Windows

Leave a Reply Cancel reply

You must be logged in to post a comment.

Microsoft MVP

VEEAMLEGEND

vexpert-badge-stars-5

Virtual Background

GoogleNews

Categories

veeaam100

sysadmin top30a

  • Vmware workstation player and devicecredential guard not compatible
    Fix VMware Workstation and Credential Guard are not compatible Virtualization
  • mdm
    Delete AssignedAccess applied via MDM WMI bridge Provider Windows
  • azure sql featured image
    How to delete ADFS Windows Internal Database without access credentials Oracle/MSSQL/MySQL
  • hero azure activedirectory
    How to add and verify a custom domain name to Azure Active Directory AWS/Azure/OpenShift
  • cimInstance wmi
    How to fix Get-CimInstance Access PermissionDenied Windows
  • screenshot 2020 04 07 at 02.14.53
    SSH and Telnet on Cisco ASA 5505: Quick Setup Guide Network | Monitoring
  • rrd
    How to uninstall the DriveLock Agent from your device Security | Vulnerability Scans and Assessment
  • git pull error
    Failed to pull image with the policy “always” error from the daemon Version Control System

Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Join 1,836 other subscribers
  • RSS - Posts
  • RSS - Comments
  • About
  • Authors
  • Write for us
  • Advertise with us
  • General Terms and Conditions
  • Privacy policy
  • Feedly
  • Telegram
  • Youtube
  • Facebook
  • Instagram
  • LinkedIn
  • Tumblr
  • Pinterest
  • Twitter
  • mastodon

Tags

Active Directory AWS Azure Bitlocker Microsoft Windows PowerShell WDS Windows 10 Windows 11 Windows Server 2016

Copyright © 2025 TechDirectArchive

 

Loading Comments...
 

You must be logged in to post a comment.