the sign-in method you’re trying to use isn’t allowed – Password Recovery https://www.top-password.com/blog Provide useful password recovery tricks, guides and software Mon, 12 Sep 2016 06:36:19 +0000 en-US hourly 1 https://wordpress.org/?v=6.4.1 Fix “The sign-in method you’re trying to use isn’t allowed” https://www.top-password.com/blog/fix-the-sign-in-method-youre-trying-to-use-isnt-allowed/ Mon, 12 Sep 2016 06:32:35 +0000 http://www.top-password.com/blog/?p=7667

“I am unable to login with any account even local administrator, while login it shows ‘The sign-in method you are trying to use isn’t allowed. For more info, contact your network administrator‘. Please help me out on this problem.”

sign-in-method-not-allowed

If your account is not granted the permission to log on locally, you’ll get such an error message at login. To fix this problem, we need to tweak the local security policy, or domain controller policy if you’re facing the same login issue with a domain user.

For Standardalone Computer:

  1. Press the Windows key + R and type secpol.msc in the Run box. Press Enter to open the Local Security Policy window.

    secpol

  2. Expand to Security Settings > Local Policies > User Rights Assignment. In the right pane, locate the policy named Deny log on locally. Double-click on it to modify.

    deny-log-on-locally

  3. Check if your problematic user account or the user groups it belongs to is listed there. If it is there, select it and click on Remove.

    remove-user-from-denied-list

  4. When it’s done, click Apply and then OK. Reboot your computer and you should be allowed to log on to your account locally.

For Domain Controller:

There is also a corresponding security policy existing in domain controller that can cause the problem “The sign-in method you are trying to use isn’t allowed. For more info”. Follow these steps to fix it:

  1. To get started, open the Group Policy Management. In Windows Server 2008, you can click Start, then select All Programs > Administrative Tools > Group Policy Management.

    group-policy-management

  2. On the left hand side of Group Policy Management, expand Forest > Domains > your domain name, and then click Group Policy Objects. In the right-hand window, double-click on Default Domain Controllers Policy and select Edit.

    edit-default-domain-policy

  3. This will open the Group Policy Management Editor window. Navigate to:
    Computer Configuration > Policies > Windows Settings > Security Settings > Local Policies > User Rights Assignments

    domain-controller-policy-editor

    In the right pane, double-click on Deny log on locally.

  4. Check if your problematic domain account or the domain groups it belongs to is listed there. If it is there, select it and click on Remove.

    remove-domain-user-from-deny-list

  5. Click Apply and OK to save your changes. Reboot your computer and you can then login without permission issues.
]]>