Simple Way to Add a Domain User to a Local Group

Sometimes I have trouble using the GUI for adding users to local groups. When I start Computer Management, select a local group and try to add a domain user, the user is not found. (“The following object is not from a domain listed in the Select Location dialog box, and is therefore not valid:”)

A simple way that works is to use the following command:

NET LOCALGROUP “group name” “DOMAIN\Account” /add


Microsoft .NET Framework 1.1 on Windows Server 2008 R2 64 bit

It is not supported to run .NET Framework 1.1 on Windows Server 2008 R2, but it seems to work. What I did was to install:

There were a few tricks I then had to use.

1. Allow the 1.1 ASP.NET ISAPI extension by using IIS Manager. Select the server name and open ISAPI and CGI Restrictions.


2. Make a copy machine.config:

MD “C:\Windows\Microsoft.NET\Framework64\v1.1.4322\CONFIG”
COPY “C:\Windows\Microsoft.NET\Framework\v1.1.4322\CONFIG\machine.config” “C:\Windows\Microsoft.NET\Framework64\v1.1.4322\CONFIG”

3. Allow the application pool identity modify access to the temporary ASP.NET folder:

ICACLS “C:\Windows\Microsoft.Net\Framework\v1.1.4322\Temporary ASP.NET Files” /grant “IIS APPPOOL\ASP.NET 1.1”:(OI)(CI)M /t