Quantcast
Channel: Group Policy forum
Viewing all 19997 articles
Browse latest View live

Can't add network printers as normal users - Point and Print disabled.

$
0
0

Disabled Point and Print restrictions. This should be all that is required right? Because that's what Microsoft say and yet again I'm having my time wasted and my stress levels risen because of their BS.

So, restrictions are disabled. I can 100% confirm this via gpresult export. There's nothing that should be conflicting with this.

But on a server 2008 client/TS when I attempt to install a network printer I get a prompt saying "To use the shared printer ..... you need to install the printer driver on your computer...."

With a button to "Install Driver" showing UAC symbol or cancel.

Clicking the "Install Driver" UAC button locks up the explorer windows. No UAC window ever appears or any other prompt, but clicking anywhere in the now broken window gives a "error beep".

Microsoft... Stop THIS FUCKING BULLSHIT AND JUST MAKE NETWORK PRINTERS WORK. I followed your instructions. There are no "restrictions"... Why isn't it "just working" like it apparantly should? Are your staff liars? Are MS liars? Who is at fault here?


deleted file recovery

$
0
0
how to recover deleted files in share folder server 2008 r2

Group policy wallpaper not working in Windows 8

$
0
0

Hi, 

We are using Windows server 2008 R2 Server and Windows 7 and Windows 8 Client machines. After restarting the Windows 8 Machines the wallpaper that we set using GPO is not working. We tried to check the policy status using RSOP.MSC it shows policy have been applied. Why its showing the Black instead of the wall paper that we applied ?

GPO Specific to Servers - BGInfo

$
0
0

Hello. I'm looking to create a GPO to run BGInfo specifically on our servers and ONLY our servers. The catch here is that I only want the script to run when the user logs in to those specific servers, and NOT for any other computer objects. 

How would I go about accomplishing this?


I've done a little research and found that using loopback would work but I can't seem to get that to work. I currently have a bginfo.bat set to run at startup under the computer configuration of the GPO. 

GPO 2012 RDS Desktop Session - Hide All Application Arrow

$
0
0

Does anyone have any ideas how to hide the all apps arrow on the metro interface please?

running a SBS 2011 server with Win 2012 Std RDS for remote workers.

Many thanks

How do I map drives in SBS 2008?

$
0
0

Yeah, yeah, I know this has been asked before. However, I've done a lot of the recommended suggestions and they didn't work. I want to have some direct help on this, since I can't get it working.

I trained under Server 2k3, and I used scripts/batch files to automate things. I'm perfectly fine with doing that to map drives, unless there's a good reason not to do so. Point me in the right direction here.

I want to map a drive for all users in the domain. PCs are Windows XP to Windows 7.

"Internet Explorer Branding failed..." even after the GPO was deleted

$
0
0

Our environment is Server 2008 R2 on all servers and Windows 7 Pro 64bit on workstations. Both servers and workstations are on IE10. When running RSOP on the servers we get the following message under the User section:

"Internet Explorer Branding failed due to the error listed below. The specified procedure could not be found."

I found that a GPO still applied IE settings through Internet Explorer Maintenance. I've since created a new GPO using GPP and deleted the old GPO. The problem is that the error still appears when running RSOP.

How can I remove these old GPO settings?

Multiple group policy in Windows 2008. Only Default policy is applied

$
0
0

Hi,

I have a remote site located internationally and i want to have a different GPO for them so to easily manage. created a another OU for them and move users/groups from User OU to remote users OU

All the exisiting policies will apply plus some new policies as well

My query is that

1. I have created the policy and is applied as per this link http://www.windowsnetworking.com/articles-tutorials/windows-2003/Group-Policy-Security-Filtering.html

but its not applied when checked with gpresult /scope user /v 
its always default domain policy that is applied

how to resolve this issue. the user previously have default policy applied


GPO to disable to Safa mode for Xp Machines is Domain ?

$
0
0

GPO to disable to Safa mode for Xp Machines is Domain ?

Please help me is there any way to disable to Safe mode for all XP machine with GPO

GPO to disable the Safe boot on all Doamin XP client machines

$
0
0

GPO to disable the Safe boot on all Doamin XP client machines

Please help is there any way to manage

is it possible to  fullfill requirement by editing below boot file

[boot loader]
timeout=30
default=multi(0)disk(0)rdisk(0)partition(1)\WINNT
[operating systems]
multi(0)disk(0)rdisk(0)partition(1)\WINNT="Microsoft Windows 2000 Advanced Server" /fastdetect /SAFEBOOT:MINIMAL(ALTERNATESHELL)

Windows Server 2008 SBS and Office 2007

$
0
0

Hello, the problem I am having is having Safe Senders and Safe Recipients imported into Outlook 2007 SP2 from group policy. It simply won't append the list. The environment is the following:

Clients: Windows XP Professional with SP3 installed. MS Office 2007 with SP2 installed. 

Server: Windows 2008 SBS with SP2 installed.

What I have setup and tried:

1. Installed the ADMX files correctly on the server and created a GPO with the Outlook settings I need:

  - Specify path to Safe Senders and Recipients files. Location: \\SERVER\netlogon\SafeSenders.txt

2. Attached the GPO to the correct OU (users are in the OU).

3. Installed the client side extensions from this link: http://www.microsoft.com/en-us/download/details.aspx?id=3628 on the Windows XP machines.

Even after setting this up the lists still will not import into Outlook 2007. What I have tried and other notes:

- Clients have access to the \\SERVER\netlogon share area. Verified through Windows Explorer.

- Tried forcing group policy update using gpupdate /force No results.

- Tried logoff and reboot combinations on client machines and still no results.

- gpresult returns the GPO is applied (but clearly it's not working).

New to setting this up to Windows XP clients, works on Windows 7 clients flawlessly. Ideas? Solutions? Thanks.


Rob Holmes

IE trusted sites with server 2003 schema

$
0
0

We have a 2008R2 DC with all fsmo roles. A 2003 DC server. The domain is server 2003 schema.Workstations from XP SP3 to Windows 8.

We setup a GPO for IE to push out trusted sites and favorites. At this point we are updating the object on the 2003 server, but it does not seem to be working when we update some items in the list. I have done some searching on this and it seems there are some bugs in 2008 with a 2003 schema.We tried to make the changes on the 2008 server previously and had issues so we continued to modify in 2003 in the past.

Questions.

1 Should this work making the changes directly on the 2003 server in GP manager?

2 Do we need to load any updates on the server/clients? I read about a Group policy extensions patch from MS. If so where do I get this, and what systems does it need to run on?

3 Do we need to update the schema to 2008 in order to modify the GPOs on the 2008 server? Or just install some fixes to the server?

thank you

Folder Redirection

$
0
0

When I apply a new policy to OU. I get error message on event viewer "Access denied ". But I give proper folder permission to user. But this error still persist.

Firefox GPO addin

$
0
0

Hi,

We have deployed Firefox GPO (For Disabling proxy setting) and working fine.

But the issue is whenever user logging into the system other than his system, he can able to remove firefox addin.

How to resolve this issue.

Windows 8 - computer group policy not applied

$
0
0

The policy was applied to Windows 8 users and computers

it runs OK for months.

A few days ago, i find the computer group policy is not applied and user policy is applied.

there is no WMI filter linked with that policy

i find in gpresult that the computer group policy is rejected by security reason (translated from original text in chinese)

the computer group policy is linked with a group of computer with read and apply policy rights.

what's wrong?  Thanks a lot for help.


Enabling manual email archive?

$
0
0

Hi,

Running Exchange 2007 and Outlook 2010 on a Windows Server 2008 R2 domain and I had previously disabled manual archiving from a customized installation routine.  At the time no one needed it but a couple users had turned it on by mistake and it was causing issues, so I disabled it. 

A couple years down the road now and a few of my managers want to keep more messages than our mail box policies allow so I suggested archiving, forgetting I had previously disabled it.  D'oh!

So now I want to re-enable it and I think group policies is the way to go.  But I'm having a little trouble figuring it all out.  I have the templates installed and spent the last hour looking through it but can't seem to find the settings I'm looking for, can someone point me in the right direction?  I don't think we are interested in AutoArchiving right now, just manual. 

Secondly, I think it would be best to locate the PST file on a server so that they can be located from any computer a user logs into.  I'd like to store it in the user's Documents folder, maybe under a sub folder there, is there some environment variable that will point me to the location of the user's documents folder?  I have another policy redirecting their documents folders to a server share.

Hope this all makes sense.

Thanks in advance,

Linn

Unable to remove printer connection from GPO

$
0
0

Hi, 

I have been diagnosing really slow logons on a windows 7 laptop and when looking through the GPO's I found one that is connecting a non-existant printer.

I can see it in the settings tab preview listed under User>Policies>Windows Settings>Printer Connections but when I navigate the GPO to that location there is no "Printer Connections" branch.

I didnt add this originally and cannot figure out how to remove it.

The domain was 2003 and is now 2008 level.

Can anyone help me out here?

I cant deleted and re-create the GPO.

Thanks for any help/advice you can offer.

Vince

Restrict to View security tab in ADUC (Dsa.msc)

$
0
0
Restrict to View security tab in ADUC (Dsa.msc) ?

IE10 - "Use a proxy serer for your LAN" setting does NOT apply to our internal clients via GPO

$
0
0

We have Windows 7 workstations and Windows 2008 R2 servers with IE8. We are piloting IE10 on few workstations - and my new IE10 GPO works well except the following two Proxy settings:

1. The Address field (under IE Options\Connections\LAN settings\) is show blank in IE10 - regardless of my GPO setting (PROXY.domainname.com)

2. The Proxy address to use for HTTP (under IE Options\Connections\LAN settings\Advanced) is shown blank in IE10 - regardless of my GPO settings (PROXY.domainname.com)

Everything else seems to be working OK. I tried selecting F5 when making those GPO settings - however, it didn't work.

Any help on the subject would be appreciated.


Big B

Deploy Printers with Group Policy, Windows Server 2012 to XP 32bit.

$
0
0

The instructions to deploy printers to XP32bit workstations call for using PushPrinterConnections.exe.  Apparently there is an issue and hotfix for Windows 2008 to add PushPrinterConnections.exe to Server 2008. http://support.microsoft.com/kb/973878

What do we do in the case of Windows 2012? 

Does the hotfix apply to Server 2012 also or is there another solution?


DouglasOfSanMarcos

Viewing all 19997 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>