You cannot see or edit another pod's OU or files
Pod isolation is part of the lab design. You have full control of your own Students > PodXX OU and files only.
Review the current lab notices before opening a support request. These workarounds are already accounted for and will not prevent you from completing the training.
These conditions are known and already handled. Follow the listed step; nothing is broken on your account, and these items will not prevent course completion.
Last updated August 24, 2026
What you see: After selecting Server Manager > Tools, you receive a credential prompt followed by an access-denied or unable-to-connect error.
What to do: Cancel the prompt. Open the Active Directory Users and Computers shortcut on your desktop. If the shortcut is missing, run the first command below from Windows Run. For Task Scheduler, use the second command.
cmd /c "set __COMPAT_LAYER=RunAsInvoker&& start "" mmc.exe dsa.msc"taskschd.mscWhy: Student accounts are intentionally not administrators on the shared server, and Server Manager is not used by any lab.
Completion note: The AC guide and quick-start instructions have been corrected.
What you see: The .vhdx media shows 'A required privilege is not held by the client' or requests administrator credentials.
What to do: Do not try to mount the media. Use the PXX-FCI-USB-Contents.txt and PXX-Employee-Handbook-Contents.txt listings in C:\CyberLab\PodXX\MP-Artifacts\. Classify and document the media from those listings; the worksheet and CSV are still graded normally.
What you see: Disk Management or diskpart denies the re-create or format operation.
What to do: Read the disk-management step so you understand the process, but do not attempt it during this cohort. Complete the sanitization log and certificate in the later step using a valid method, result, disposition, SanitizedBy name, and date.
Completion note: The instructor performs the disk operation for this cohort; the log and certificate are the graded work.
What you see: The PodXX ACS Nightly Backup task step fails, or changing the account it runs under returns Access is denied.
What to do: Create the PXX-svc_backup service account as written, read the Task Scheduler step without attempting it, and continue to M2-L2.
Why: Storing a scheduled-task credential requires administrator rights that students do not have on the shared server.
Completion note: This lab is auto-credited for the current cohort.
What to do: Work through the required settings, then use the command below to verify the live policy. Do not run the Set- command or edit the GPO; both operations will be denied.
Get-ADDefaultDomainPasswordPolicy | Select-Object MinPasswordLength, ComplexityEnabled, LockoutThreshold, PasswordHistoryCount, MaxPasswordAge, MinPasswordAgeWhy: The domain password policy is shared by all 20 pods, so it has been hardened centrally.
Completion note: This lab is auto-credited for the current cohort. The live policy requires 12 characters, complexity, lockout after 10 attempts, 24 remembered passwords, and a 90-day maximum age.
What you see: Windows reports that the password does not meet the password policy requirements when you create an account or set a password.
What to do: Use a unique password with at least 12 characters, including uppercase and lowercase letters, a number, and a symbol. Do not reuse a recent password. When an older guide refers to the password provided for your portal sign-in, create a separate password that meets this policy instead.
Why: The hardened domain policy applies to every account created or updated in the lab. A rejection means the policy is working and does not indicate a problem with your account.
What you see: The old PODXX-GW Guacamole tile times out or repeatedly reconnects.
What to do: Connect to PODXX-DC in Guacamole, open Edge or Firefox on that desktop, and browse to the address below with your pod number in place of XX. For Pod 06, use http://10.51.6.1. Sign in with the firewall credentials issued by your instructor; they are included in your handout and are not published here.
http://10.51.XX.1Why: The remote-desktop gateway carries desktops and terminals, not websites. The separate PODXX-GW tile was removed.
What you see: Interfaces > Assignments does not show an Add button when you begin the DMZ or VLAN segmentation lab.
What to do: Create the VLAN before assigning the interface. The Add button becomes available on Interfaces > Assignments after at least one VLAN exists.
Why: Each pod firewall has only two physical ports for WAN and LAN, so there is no spare interface to assign until a VLAN has been created. The updated SC guide now uses this sequence.
Pod isolation is part of the lab design. You have full control of your own Students > PodXX OU and files only.
All required work is possible without shared-server administrator rights, with the current-cohort exceptions documented above.
The verifier runs on a schedule. This does not represent a zero score; check the progress page again shortly.
CMMC PE Level 1 SCORM errors, including 'sesskey was missing,' occur on the learning platform rather than in the lab environment. Report them to the course platform support address.
Pods are moving to individual lab servers during break week, where each student will be an administrator of their own machine. MP M1-L1, MP M1-L2, IA M2-L1, and IA M3-L2 will then return to full hands-on labs. Already-earned credit will not be affected.
No action is required for these previously reported conditions.
The shared server now supports 12 simultaneous sessions and has been verified under load.
Fixed on all 20 pods; the task is present and readable by each student account.
Use studentNN@acs-p01.local or ACS-P01\studentNN. ACS alone is not a valid domain name.
The AC and IA guides and quick-start handouts were reissued.
The shortcut was removed; the ADUC shortcut is now the supported launcher.
Each student account now has full control of its assigned pod evidence folder.
Fixed on all 20 pods; http://10.51.XX.1 now opens from PODXX-DC.
All 20 pod firewalls were restarted and verified responding.
Include your full name, student number or pod, the page you were using, what you expected to happen, and a screenshot of the error.
Never include your password or invitation link in a support email.