Hi,
If I deny the user from accessing the DC through network (the netlogon right), would it be a problem for the GPO to be applied, i.e the logon scripts.
I mean, when he tries to use his credentials to open a file on the DC (i.e \\XX\sysvol\domain\XX\XX.vbs), it would fail with "the specific logon right was not granted"; but if he logs on through terminal service first, and access that file later, it works.
So when he logs in, would the script get executed in such a situation?