DRDigitalRCCLab Companion
DigitalRCC Support

How can we help?

Review the current lab notices before opening a support request. These workarounds are already accounted for and will not prevent you from completing the training.

Current workarounds

Action required

These conditions are known and already handled. Follow the listed step; nothing is broken on your account, and these items will not prevent course completion.

Last updated August 24, 2026

01Server Manager asks for administrator credentialsAC, IA, and SI labs

What you see: After selecting Server Manager > Tools, you receive a credential prompt followed by an access-denied or unable-to-connect error.

What to do: Cancel the prompt. Open the Active Directory Users and Computers shortcut on your desktop. If the shortcut is missing, run the first command below from Windows Run. For Task Scheduler, use the second command.

cmd /c "set __COMPAT_LAYER=RunAsInvoker&& start "" mmc.exe dsa.msc"taskschd.msc

Why: Student accounts are intentionally not administrators on the shared server, and Server Manager is not used by any lab.

Completion note: The AC guide and quick-start instructions have been corrected.

02The .vhdx media will not open or mountMP M1-L1

What you see: The .vhdx media shows 'A required privilege is not held by the client' or requests administrator credentials.

What to do: Do not try to mount the media. Use the PXX-FCI-USB-Contents.txt and PXX-Employee-Handbook-Contents.txt listings in C:\CyberLab\PodXX\MP-Artifacts\. Classify and document the media from those listings; the worksheet and CSV are still graded normally.

03The sanitized volume cannot be re-created or formattedMP M1-L2

What you see: Disk Management or diskpart denies the re-create or format operation.

What to do: Read the disk-management step so you understand the process, but do not attempt it during this cohort. Complete the sanitization log and certificate in the later step using a valid method, result, disposition, SanitizedBy name, and date.

Completion note: The instructor performs the disk operation for this cohort; the log and certificate are the graded work.

04The nightly backup task cannot be changedIA M2-L1

What you see: The PodXX ACS Nightly Backup task step fails, or changing the account it runs under returns Access is denied.

What to do: Create the PXX-svc_backup service account as written, read the Task Scheduler step without attempting it, and continue to M2-L2.

Why: Storing a scheduled-task credential requires administrator rights that students do not have on the shared server.

Completion note: This lab is auto-credited for the current cohort.

05The domain password policy cannot be changedIA M3-L2

What to do: Work through the required settings, then use the command below to verify the live policy. Do not run the Set- command or edit the GPO; both operations will be denied.

Get-ADDefaultDomainPasswordPolicy | Select-Object MinPasswordLength, ComplexityEnabled, LockoutThreshold, PasswordHistoryCount, MaxPasswordAge, MinPasswordAge

Why: The domain password policy is shared by all 20 pods, so it has been hardened centrally.

Completion note: This lab is auto-credited for the current cohort. The live policy requires 12 characters, complexity, lockout after 10 attempts, 24 remembered passwords, and a 90-day maximum age.

06The password does not meet the policy requirementsAC L2.1 and password-setting labs

What you see: Windows reports that the password does not meet the password policy requirements when you create an account or set a password.

What to do: Use a unique password with at least 12 characters, including uppercase and lowercase letters, a number, and a symbol. Do not reuse a recent password. When an older guide refers to the password provided for your portal sign-in, create a separate password that meets this policy instead.

Why: The hardened domain policy applies to every account created or updated in the lab. A rejection means the policy is working and does not indicate a problem with your account.

07The pod firewall tile times out or loopsSC firewall labs

What you see: The old PODXX-GW Guacamole tile times out or repeatedly reconnects.

What to do: Connect to PODXX-DC in Guacamole, open Edge or Firefox on that desktop, and browse to the address below with your pod number in place of XX. For Pod 06, use http://10.51.6.1. Sign in with the firewall credentials issued by your instructor; they are included in your handout and are not published here.

http://10.51.XX.1

Why: The remote-desktop gateway carries desktops and terminals, not websites. The separate PODXX-GW tile was removed.

08The interface assignment Add button is missingSC M2-L2 and SC M2-L3

What you see: Interfaces > Assignments does not show an Add button when you begin the DMZ or VLAN segmentation lab.

What to do: Create the VLAN before assigning the interface. The Add button becomes available on Interfaces > Assignments after at least one VLAN exists.

  1. For the DMZ, open Interfaces > VLANs > Add. Select parent interface vtnet1 (LAN), enter VLAN tag 50 and description DMZ, then save.
  2. Open Interfaces > Assignments, select Add, and assign VLAN 50 on vtnet1. It appears as OPT1.
  3. Open Interfaces > OPT1, enable the interface, set the description to DMZ, choose Static IPv4, enter 10.52.XX.1/24 using your pod number, then save and apply changes.
  4. For M2-L3, create VLANs 10, 20, 30, and 40 the same way. Address them 10.61.XX.1/24, 10.62.XX.1/24, 10.63.XX.1/24, and 10.64.XX.1/24.
  5. Do not use an address inside 10.51.XX.0/24 for a DMZ or VLAN; that subnet belongs to the LAN and pfSense will reject the overlap.

Why: Each pod firewall has only two physical ports for WAN and LAN, so there is no spare interface to assign until a VLAN has been created. The updated SC guide now uses this sequence.

Expected behavior

You cannot see or edit another pod's OU or files

Pod isolation is part of the lab design. You have full control of your own Students > PodXX OU and files only.

You are not an administrator on the shared server

All required work is possible without shared-server administrator rights, with the current-cohort exceptions documented above.

Progress may briefly show unavailable after evidence is submitted

The verifier runs on a schedule. This does not represent a zero score; check the progress page again shortly.

Course-platform errors are separate from the lab

CMMC PE Level 1 SCORM errors, including 'sesskey was missing,' occur on the learning platform rather than in the lab environment. Report them to the course platform support address.

Coming later this cohort

Pods are moving to individual lab servers during break week, where each student will be an administrator of their own machine. MP M1-L1, MP M1-L2, IA M2-L1, and IA M3-L2 will then return to full hands-on labs. Already-earned credit will not be affected.

Resolved issues

No action is required for these previously reported conditions.

Only two students could connect at once and new sessions were refused

The shared server now supports 12 simultaneous sessions and has been verified under load.

The PodXX ACS Nightly Backup task was not visible in Task Scheduler or PowerShell

Fixed on all 20 pods; the task is present and readable by each student account.

Sign-in was rejected when using ACS\studentNN

Use studentNN@acs-p01.local or ACS-P01\studentNN. ACS alone is not a valid domain name.

The guides pointed students to Server Manager for ADUC

The AC and IA guides and quick-start handouts were reissued.

A Server Manager desktop shortcut was present

The shortcut was removed; the ADUC shortcut is now the supported launcher.

Students could not access C:\CyberLab\PodXX\

Each student account now has full control of its assigned pod evidence folder.

The pod firewall page would not load from the lab desktop

Fixed on all 20 pods; http://10.51.XX.1 now opens from PODXX-DC.

Some pod firewalls were offline

All 20 pod firewalls were restarted and verified responding.

Still need help?

Include your full name, student number or pod, the page you were using, what you expected to happen, and a screenshot of the error.

Never include your password or invitation link in a support email.

Email support@digitalrcc.com