If the user is in an Active Directory domain, follow these steps:
1. Log on to the domain controller as a Domain Administrator
2. Start the Active Directory Users and Computers snap-in
3. Right-click the organizational unit (OU) in which the user right to log on as a service is granted, and then click Properties. By default, this is in the Domain Controller OU.
4. Click the Group Policy tab
5. Click Default Domain Controllers Policy, and then click Edit
6. Expand Computer Configuration, expand Windows Settings, and then expand Security Settings
7. Expand Local Policies, and then click User Rights Assignment
8. In the right pane, right-click Log on as a service, and then click Security
9. Add the user that you want to the policy, and then click OK
10. Quit the Group Policy Editor, click OK, and then close the Active Directory Users and Computers snap-in.