Quantcast
Channel: Group Policy forum
Viewing all 19997 articles
Browse latest View live

A processing error occurred collecting data using this base domain controller.

$
0
0

Hello Guys,

I have got a problem using the Windows 8 GPMC.

If I want to use the new "Status" feature, I'm getting this failure:

We have got two 2008 R2 DCs and the rest is Server 2003 R2.
The DC that holds the FSMO roles is also a Server 2003 R2.

The error is the same as described here:
http://social.technet.microsoft.com/Forums/nb-NO/winserverGP/thread/baef3a58-bcae-4336-970a-1e9b4ebc03f8

It seems like GPMC can't get the list of DCs:


MVP Group Policy - Mythen, Insiderinfos und Troubleshooting zum Thema GPOs: Let's go, use GPO!


How to move all files from a folder for a user to a centralized folder on a core server with a GP

$
0
0

Hello,

I was curious if someone know how to move all the files of a user "local" profile on a Terminal Server to that of a centralized server where the "local" profile of like the user desktop, favorites, setting, etc are stored in the event the local profile on the TS become corrupt it can pull from this server...

The problem I have is no matter what I tell users to save there files to our Y drive that is a folder that is synced across all 6 of our TS servers, users still store files on there desktops, so as you can imagine if one day they are on one server, then next day they could be on another and there files aren't the same.... hence the reason why I want to move all there files to the centralized server so when I redo the profiles from scratch on the TS server in the farm they suck files from the core server and have all of the files they are used to having.... 

So I was curious and I've heard from some this is possible in a GP, but I'd like to move the contents of all 6 TS for each user or if I have to d this on  per user basis I will, just looking for a way to move the files....

Event ID 1058 Group Policy Preprocessing Error Code 3

$
0
0
You will see this in the event logs, the processing of group policy failed. It is trying to process a policy that doesn't exist. After reading http://technet.microsoft.c the first resolution Error code 3 (The system cannot find the path specified) lead me to this --> http://support.microsoft.c

4. In the right details pane, double-click DisableDFS.  

This entry doesn't exist but if I add it, it works. Problem is solved on machine 1. 

Machine 2. This is a brand new Windows 7 setup to investigate this problem because it appears on a lot of the workstations and I have no idea why. Applying this fix did NOT solve the problem. I am a bit stuck. I have new GPs to roll out but they won't apply with this error in place.

I can ping the logon server just fine and I can get to \\FQDN\sysvol as well. gpupdate /force shows the same error in the event log.

Don't have proper privilege to change the date and time. Group Policy does not work

$
0
0

Hello All,

I have configure group policy to change date and time only administrator. The problem is Windows XP machine cannot view the calendar but windows 7 can. So i need to view the calender for windows XP machine.

Error: you do not have proper privilege to change the date and time.  

Please suggest.

Thanks


Control Panel - Change Detail View, correct registry path and entries

$
0
0

Hello, 

Environment: Windows 2008 server R2

I have the following: When users connect via Citrix Receiver to a published app they see the control panel printers published. The user see the default view layout in Panel windows. The issue here is that we want change the View display. This can be done via View|Choose Details and checking the following check boxes: 

Name, Classification, device category, Manufacturer and Status

Now we want this configuration done via GPO (user configuration -- preferences, Windows Settings|registry.  What is the correct path and keys to be edited.   I have found the path HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion... \Software\Microsoft\Windows\CurrentVersion\Explorer\Streamsbut i am not sure if this is the correct path and also what are is the correct correct keys to get Name, Classification, device category, Manufacturer and Status configured. 

Please help

Thanks in advance.

2012 R2 - One GPO not being applied

$
0
0

Hello,

I've had a look at other posts of similar issues but I couldn't find a solution..

Quick history:

I have a forest with a single DC. The forest started as a 2012 forest on a single Windows Server 2012 DC. After about a year  (a month ago) I have joined a 2012 R2 DC, demoted the 2012 DC and raised the functional level to 2012 R2.

Problem I'm having:

I have one user GPO which doesn't get applied anymore (it used to). When running Group Policy Modelling in GPMC I can see the policy being applied in the report, as it should. However when running Group Policy Results in GPMC that policy doesn't exist in the report at all.

Troubleshooting:
I've confirmed the following to be correct and done the following to try and resolve the issue:

-GPO's security filtering

-GPO's delegation permissions

-GPO is assigned to the correct OU and enabled

-Move GPO to a different OU

-No WMI filters are applied

Any help will be greatly appreciated! Thanks 



Wallpaper via Group Policy and Windows 7

$
0
0
My organization has recently deployed Windows 7 Professional (RTM, VLK) to our two computer labs. Users who log onto these machines get a wallpaper that has my organizations name and logo, deployed via group policy. After the upgrade to Win7 Pro, the wallpaper does not apply correctly. I began troubleshooting whether this was a result of conflicting policies, but even after making a new user, and placing him in a test OU with only the wallpaper GPO applied, this still happens.

Group Policy to Force Remote Desktop NLA Radio Button

$
0
0

Hey Guys:

I'm looking for a script or GPO to force the Network Level Authentication (NLA) for Remote Desktop.

I've searched and found a lot of info on how to disable the "less secure" remote desktop option but can't figure out how to force the "more secure" radio button.  When I disable the "less secure" option Windows still defaults at "Don't allow connections to this computer".  

That's what I want to change.  I want the GPO to force the "Allow connections only from computers running Remote Desktop with Network Level Authentication (more secure)" option.

Any ideas?

Thanks!


Laptop lose mappings once disconnected from Network

$
0
0

We are using GP to map all of our network drives to users. Most of our laptop users that work remotely, when they login the drives are disconnected but they are still mapped. Once they connect to the VPN, they can access those drives. Others laptop users that we have, when they login to their machines, the drives are not mapped. When they VPN in the drives are still not mapped or connected.

I need the drives to stay mapped on those end users machines once they leave the network, so when they VPN in, the drives will not be accessible. 

Audit all printers deployed via GPO

$
0
0
I am in the process of cleaning up our old print servers and have run across several issues with multiple objects referencing the same IP. I want to clean up these objects and combine them in to one. The issue is I don't know if these objects are deployed via GPO. Is there a way to determine if a print server object is deployed via GPO and if so what GPO is deploying it?  

how can i remove or hide remote desktop connection from my clients?

$
0
0

Hi

I don't want my clients to have access to remote desktop connection Icon in windows 7 and 8

How can I hide it from group policy in domain controller?

Thank You

Added PolicyDefinitions folder to add admx files, but other policies disappeared

$
0
0

I'm trying to add the admx files for Office 2013 (will try for 2010 later).  I followed the support article on how to create the PolicyDefinitions folder, and then copy the en-us directory and admx files in to that folder.

when I open the editor to make changes, the old policies are gone.  I only list policies for Office2013 (Outlook doesn't even show up).

Am I missing an important step here?

Computer locked

$
0
0
My computer says "This computer is in use and has been locked" Then it says only me or the admin can unlock this computer. the user name comes up righ and it asks for my password. I don't remember my password....what do I do....?

Server 2003, Block IPods and IPads

$
0
0

Good Morning,

My network requires pretty high security and we have a policy that disables USB devices.  I have a custom GPO that blocks the usbstor.sys, which works for thumb drives and external hard drives.  But in some testing we learned you can access pictures on an Ipod/Ipad and it shows up as a camera.  Searching through the forums haven't given me very much success.  Any help would be appreciated.

GPO To Prevent Windows 7 Users From Saving Files Anywhere On PC?

$
0
0

I'm trying to setup some laptops will very limited access.  All the user needs to be able to do is log in, join wifi, launch a VPN client and use remote desktop to access a remote machine.  Nothing else is to be done on these computers.  We will also have a locked down IE available so they can verify Internet connectivity and join wifi networks that require registration via a browser.

I have set up a group policy to restrict access to the C drive.  It is successfully preventing the users from saving to the desktop and downloads folder, buy they can still save to the local Documents folder as if there was no restriction.

What else needs to be done to block saving files everywhere including the Documents folder?

I would prefer the the Documents folder and Windows Explorer icon shown on the task bar are not even displayed.  I didn't see an option to hide those in the policy settings.

I have hidden most items from the user's desktop profile, but Explorer still shows and displays their documents folder even thought the network and local disk drive are not displayed.


Deploying Lync 2013 Pro Client - created Lync OCT file, cannot find .msi to deploy via GPO!

$
0
0

Hi,

As above, I am deploying Lync 2013 onto 100 machines approx that already have Office 2010 Pro Plus installed. Looks like the only option is to install it via Group Policy. I have created the Lync 2013 OCT file using these instructions as these were the closest to my goals (for lync 2013 basic install):

http://unifiedme.co.uk/2013/04/silent-installation-of-lync-basic-2013-client/

Now, I am trying to find the beloved Lync 2013 msi file but I am racking my brains now. No where to be found and searched for the folder on my machine where the msi folder is. C: \ Program Files (x86) \ OCSetup No where to be found. How am I going to do this without going into writing a script/zap file (using .exe)? 

Software - Lync 2013 Pro (Lync 2013 Servers installed) - Windows 7 Enterprise SP1 - Office 2010 Pro Plus SP1

DC - 2008 R2.

hope you can help.

Problem Pushing Printer Preferences through Group Policy

$
0
0

Most of the time, networked printers that we push through group policy preferences show up just fine on our clients (Windows 7). About 1 in 10 computers fail however, and it's driving me up the wall! The computer that fails is not consistent, meaning I can reboot a computer and the printer then shows up correctly. It may not, however, a week later. Fairly random. Looking through the application event log, I uncovered this:

The user 'myprinter' preference item in the 'mygrouppolicy {7EDE8A14-773C-4E43-93AE-050240E0B204}' Group Policy object did not apply because it failed with error code '0x800706ba The RPC server is unavailable.' This error was suppressed.

Again, this error does not occur all the time, though if I reboot a large group of computers, it will definitely show up on 1 or 2 of them. At this point, I'm looking for any suggestions for a next step. Thanks!

-Peter

 

Set IE As Default Browser

$
0
0

Hello 

I Have ~3000 users with XP ,w7 and some win2000.

I need to set IE as default browser for all users using some GPO script, how can I do that ?

mby some one have registry script that is ready for use to resolve my problem ?

Server 2008 r2 and IE9 proxy

$
0
0

I am running a Windows Server 2008 R2, with IE10 installed. I have found the new administrative templates for IE, and I notice IE8 settings is still in the same place.

IE8 settings are being picked up by clients fine, but anything with IE9+ does not pick up the proxy settings. Where are the proxy options in Administrative Templates? I can only see the option to protect them from being tampered with.

Thanks

Disable IEAK Setting - "Delete existing favorites and links, if present"

$
0
0

Hi!  We have had a workstation image (Windows 7 x64) deployed to numerous machines (including my own) with the following IEAK setting enabled:

"Delete existing Favorites and Links, if present"

The setting is located in gpedit, under User Configuration/Windows Settings/Internet Explorer Maintenance/URLs/Favorites and Links

The image is being fixed, but customer service is looking to have us fix via GPO.  I have been scouring the net, trying to figure out a way to do this.  I haven't found a registry switch and if I configure a GPO for this, it just sets that particular setting to "not configured" and won't disable it on those that have had it enabled.  The only way I can see to do this is manually on each machine, but that's not my preferred option, obviously.  Does anyone know of a way to disable this setting via GPO?  Batch script, VB, reg fix?

Thanks!

-Brandon


Viewing all 19997 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>