Quantcast
Channel: Group Policy forum
Viewing all 19997 articles
Browse latest View live

Error code 0x80070035 on drive maps in GPO, "Network path cannot be found".

$
0
0

I am trying to apply a GPO that maps drives so that another GPO can then make them available offline for a couple of hundred users.

Every time I try to apply the policy it fails with an 0x80070035 error which translates as a "Network Path cannot be found". The security settings for that particular folder is fine and the user can see it ok, furthermore following logon I can manually map the drive through windows explorer and through CMD/powershell using the net use command.

The path i tried was \\servername\otherdir\securearea\ which didnt work (i did drop and add the final "\" just in case i was going mad)

i then tried \\servername\otherdir\unsecurearea\ which still failed

just to prove my lack of sanity i created a folder on the hard drive of the laptop itself, made it a shared folder and tried both \\localhost\sharedfolder and \\127.0.0.1\sharedfolder, they all fail with the same error code.

i have checked the hosts and the lmhosts files are there is nothing new in there, only the usual MS gumf that has come with every copy on windows since Win95

patience is wearing thin, hair is getting short ...

thoughts anyone?


Nothing is unfixable - with a suitable sized hammer!



The Group Policy Snap in was unable to save your changes due to the following error : access is denied

$
0
0

Hello ,

im working on WS2003 ... i am a domain admin and have all rights ... but when i try to make changes to a specific policy it gives me this error " The Group Policy Snap in was unable to save your changes due to the following error : access is denied" with no additional details ... and when i change in another policy no problems occur ... i tried doing it from a remote gpmc it gave me this error " Unhandled exception has occured in a component in your application. if you click continue . the application will ignore this error and attempt to continue .

Access is denied ( exception from HRESULT:0x80070005 (E_ACCESSDENIED))"

when i click Details

"See the end of this message for details on invoking
just-in-time (JIT) debugging instead of this dialog box.

************** Exception Text **************
System.UnauthorizedAccessException: Access is denied. (Exception from HRESULT: 0x80070005 (E_ACCESSDENIED))
   at Microsoft.GroupPolicy.AdmTmplEditor.IGPMAdmTmplEditorCallback.ApplyChanges()
   at Microsoft.GroupPolicy.AdmTmplEditor.Editor.SaveChanges()
   at Microsoft.GroupPolicy.AdmTmplEditor.Editor.buttonApply_Click(Object sender, EventArgs e)
   at System.Windows.Forms.Control.OnClick(EventArgs e)
   at System.Windows.Forms.Button.OnClick(EventArgs e)
   at System.Windows.Forms.Button.OnMouseUp(MouseEventArgs mevent)
   at System.Windows.Forms.Control.WmMouseUp(Message& m, MouseButtons button, Int32 clicks)
   at System.Windows.Forms.Control.WndProc(Message& m)
   at System.Windows.Forms.ButtonBase.WndProc(Message& m)
   at System.Windows.Forms.Button.WndProc(Message& m)
   at System.Windows.Forms.Control.ControlNativeWindow.OnMessage(Message& m)
   at System.Windows.Forms.Control.ControlNativeWindow.WndProc(Message& m)
   at System.Windows.Forms.NativeWindow.Callback(IntPtr hWnd, Int32 msg, IntPtr wparam, IntPtr lparam)


************** Loaded Assemblies **************
mscorlib
    Assembly Version: 2.0.0.0
    Win32 Version: 2.0.50727.5477 (Win7SP1GDR.050727-5400)
    CodeBase: file:///C:/Windows/Microsoft.NET/Framework/v2.0.50727/mscorlib.dll
----------------------------------------
Microsoft.GroupPolicy.AdmTmplEditor
    Assembly Version: 6.1.0.0
    Win32 Version: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
    CodeBase: file:///C:/Windows/assembly/GAC_32/Microsoft.GroupPolicy.AdmTmplEditor/6.1.0.0__31bf3856ad364e35/Microsoft.GroupPolicy.AdmTmplEditor.dll
----------------------------------------
System
    Assembly Version: 2.0.0.0
    Win32 Version: 2.0.50727.5467 (Win7SP1GDR.050727-5400)
    CodeBase: file:///C:/Windows/assembly/GAC_MSIL/System/2.0.0.0__b77a5c561934e089/System.dll
----------------------------------------
System.Windows.Forms
    Assembly Version: 2.0.0.0
    Win32 Version: 2.0.50727.5468 (Win7SP1GDR.050727-5400)
    CodeBase: file:///C:/Windows/assembly/GAC_MSIL/System.Windows.Forms/2.0.0.0__b77a5c561934e089/System.Windows.Forms.dll
----------------------------------------
System.Drawing
    Assembly Version: 2.0.0.0
    Win32 Version: 2.0.50727.5467 (Win7SP1GDR.050727-5400)
    CodeBase: file:///C:/Windows/assembly/GAC_MSIL/System.Drawing/2.0.0.0__b03f5f7f11d50a3a/System.Drawing.dll
----------------------------------------
System.Xml
    Assembly Version: 2.0.0.0
    Win32 Version: 2.0.50727.5476 (Win7SP1GDR.050727-5400)
    CodeBase: file:///C:/Windows/assembly/GAC_MSIL/System.Xml/2.0.0.0__b77a5c561934e089/System.Xml.dll
----------------------------------------
Accessibility
    Assembly Version: 2.0.0.0
    Win32 Version: 2.0.50727.4927 (NetFXspW7.050727-4900)
    CodeBase: file:///C:/Windows/assembly/GAC_MSIL/Accessibility/2.0.0.0__b03f5f7f11d50a3a/Accessibility.dll
----------------------------------------

************** JIT Debugging **************
To enable just-in-time (JIT) debugging, the .config file for this
application or computer (machine.config) must have the
jitDebugging value set in the system.windows.forms section.
The application must also be compiled with debugging
enabled.

For example:

<configuration>
    <system.windows.forms jitDebugging="true" />
</configuration>

When JIT debugging is enabled, any unhandled exception
will be sent to the JIT debugger registered on the computer
rather than be handled by this dialog box.

"

Anyone Help Please


RM

GP Administrative Templates for Windows 8

$
0
0

Are there Group Policy settings or Admin Templates for windows 8 yet? I am testing Win8 and MOST of the existing policies work, but I'd like to see what settings I can apply toward the Metro UI, such as removing the MSN login apps and so forth.

also.. anybody know why mapped drives that work fine in Win7 don't apply to Win8? The user's home directory maps, but not the ones I've defined in GP.

WINDOWS 2012R2 Troubleshooting AD Replication error 1818 The remote procedure call was cancelled

$
0
0
Today I tried to add the additional domain controller windows 2012. I have two sites, one is CN, the other is NL. In CN site, I  add additional DC to my windows 2008 environment. However, once I synchronize NL DC. there is error message. The remote procedure call was cancelled. What shall I do? It seems that there is not article or KB fit for windows 2012.

Script to get permissions to send emails to a Distribution List

$
0
0

Dear All,

Is there any way to get a script which tell us to what all the distribution Groups a user can have the permissions to send an email

Example :

Suppose that there is a User "A" and there are few Distrbution Lists B,C,D,and E. is there any script which tells that to which of these Distribution Lists the user can send an email ( B,C,D and E are restricted Distribution Lists )

Please help me to get a script of this kind wheter a Powershell or VB is not a matter

Regards

Naveen Chandra G.V


Naveen Chandra G.V

USB Disabled policy affecting the data card (Internet dongle) not to work properly in Windows 7

$
0
0

Hi All.

We have blocked USB Mass Storage using GPO.

We would like to install data cards with out any issues.Beacause of the GPO we are getting a message  "Access Denied" while accessing the same to install the device software.

Since the data card software is inside the storage of each device.If I removed the Policy tempororly to install the same even after enabling the policy blocking the device not to work.

Please suggest any ideas

Dúvida Windows Server 2008 GPO Preference ou Script.

$
0
0

Estou tentando via GPO modificar um um registro, porém o registro que tenho que alterar e por Match SID do usuário,

Estava tentando pela nova forma de GPO preference - Registro do windows 2008 mais não sem sucesso.

Queria uma ajuda para fazer um script ou tentar uma variável para conseguier esse SID.

No domínio em Atributos é o objetoSid.



K_cesar

Internet Explorer Settings not Applying in Windows Server 2008 R2 Terminal Server

$
0
0

Hi Guys,

Our group policies for IE 9 were working on Friday and yesterday they had stopped. All of our IE Zones and Privacy Settings have disappeared and proxy settings are being applied. I can't see any errors in the Event Log and I have a strange issue were a lock is appearing next to the Internet Zones (Please see attached Image).

Any suggestions.


TPark IT Technician


Sequencer was not able to resume

$
0
0

I am sequencing an application in App-V 5.0 SP2. During the app installation in the monitoring phase the application required a reboot and i clicked ok. After the reboot the sequencer launched automatically but not resuming back to the monitoring phase and thrown the below error.



I am using Windows 2008 R2 machine.

User GPP Folder Options - Apply once and do not reapply - Win 2012 R2 RDSH

$
0
0

Hi,

I predefined some folder options in a user group policy and checked the options 'Run in logged-on user's security context...' and 'Apply once and do not reapply'. The policy is linked to an OU containing several Remote Desktop Session Hosts (Win 2012 R2). Not to mention that there is also a loopback policy in place.

Unfortunately, the flag 'Apply once and do not reapply' is not recognized. The folder options are set each time a user logs on. Therefor all settings changed by the user during the session are going to be reset at the next group policy refresh or at the next log on.

To troubleshoot the issue I checked if the corresponding value in the registry 'HKEY_CURRENT_USER\Software\Microsoft\Group Policy\Client\RunOnce' is in place. Which turned out to be true. Moreover, I enabled Group Policy Preferences Logging. The log file shows the entry 'Failed hidden filter [FilterRunOnce] ... Filters not passed'. Despite all reports, the folder options are reset at each log on, as also ProcMon log confirms.

Your help is greatly appreciated. Thank you!

I forgot to mention that exactly the same procedure is working with registry GPP settings.

Export/Import group policy

$
0
0

Hi,

how to get all the group policy settings applied in a domain ?

thanks

Group policies not being applied to windows 8 computers

$
0
0

We have a number of windows 8 machines on our network now, but none of them seem to apply the group policies.

Even though when you do a gpupdate /force it tells you that it has.

When you do gpresult /r it does not list any of the computer policies?

How do I disable user's drive mapping preferences for a group of servers?

$
0
0
I have a remote group o servers in which I don't want to automatically mount the network drives that are mounted by default when a remote user log-in into a server in my other sites. I know that I probably need to use loopback processing, but although I have already set a GPO with merge behaviour configured to delete any network drive map from G: to the end, it is not working as expected.

Any suggestions ?

GPO Cross Forest for Folder Redirection

$
0
0

Am bit confused regards to folder redirection and GPO permissions etc..

So we are migrating users from one forest to another, perfectly doing good with email, pc  and groups. We've created a GPO on new DC server for folder redirection that points to same location as one before.

So user lets say was on abc.com > \\server\user$\user1\Documents

after the migration user logs in with zxy.com domain but can not access the \\server\user$\user1\Documents due to the permissions that were created with abc.com ...

I thought that ADMT inserts the abc.com SID and permissions should be same, but apparently that is not the case.

In order to get user view his/her files at \\server\user$\user1\Documents from zxy.com domain, an IT admin needs to add read/write/execute permission to that folder..

Is there anyway better of doing this than just assigning permissions per user basis folder?

Windows 8 and IE10 not accepting Proxy Settings via Group Policy

$
0
0

We have recently introduced a couple of Windows 8 computers in our network, and we are having issues applying the Internet Explorer Proxy Server settings.

We use a Microsoft TMG 2010 server as our proxy server for accessing the internet. We have been using a GPO with the following settings to automatically configure our Windows 7 computers running IE9 with the appropriate Proxy settings:

User Configuration\Policies\Windows Settings\Internet Explorer Maintenance\Connection/Proxy Settings

  • “Enable Proxy Settings” : Checked
  • “Address of proxy” : server.domain.local
  • “Port” : 8080
  • “Use the same proxy server for all addresses” : Checked
  • “Exceptions” : Here we have a list of several internal or partner sites that should not be proxied.

This GPO has worked beautifully for our Windows XP and Windows 7 users with IE 7, 8 and 9. Now with Windows 8 and IE10, this no longer works. I’ve therefore added a Windows Server 2012 Domain Controller to the network, and using GPMC on that new DC, I created a new GPO with the following settings:

User Configuration\Preferences\Control Panel Settings\Internet Settings\Internet Explorer 10

Now, seeing as these are preferences, it’s a little different.  But, I’ve “checked off” the option “Use a proxy server for your LAN” as well as “Bypass proxy server for local addresses”. Then I click on “Advanced” and setup all my proxy settings the way I would like them, including the proxy server name, port and exceptions list.

When this new group policy gets applied to my Windows 8 PC, the only setting that gets applied is the “Use a proxy server for your LAN”. It does not configure the name or port of the proxy server nor does it configure the exceptions list. If I go back to the GPMC, and edit the new GPO, the settings are all there. However, if I just view the settings from the main GPMC screen (without opening the GPO itself), I don’t see all of those settings (again, only the one “Use a proxy server…”)

What am I missing???


New login scripts to replace vbs

$
0
0

I was looking to replace my login script vbs in one domain and the hardcoded profile tab in AD in another domain with one procedure.

I was thinking of creating a GPO that would look at the security filtering to decide what mapping the user would get.

does this gpo need to be applied at a particular OU or does it need to be part of the default domain policy?

my ad structure right now is design by location not dept but also is global, so I would only have right to the US sub OUs.

Windows 2003 Password Policy Ignored in Default Domain Policy

$
0
0

Hi there I've a problem on my DC.

i set in the "default domain policy" the settings form the policy password lenght complexity etc etc..

When i RUN Group policy modelling simulation i cannot view the settings of Windows Settings\Security Settings\account policy\password policy

the scope of the GPO is Authenticated

the GPO seems to be ignored for the security settings but not for the other parameters like kerberos security.

Any Idea to solve this issue?

Folder Redirection / Offline Files / Network Drive / Missing Files

$
0
0

We are having instances where people are savign work and this work is not available when the user moves to a different computer. On occasions it is when the user have saved to my documents and this hasnt redirected which we are ok on solving. However on other occasions I am being told they are saving to their network drive H:\ and the file or changes to a file are not appearing

On digging around I did find the file in sync center / offline files. My question is how and why would a file end up there and is there group policy settings maybe that are wrong to cause this?

Thanks

Robbie

GPO WMI Filtering

$
0
0

Hey Guys,

I have some kind of an issue here.
I want to apply a GPO only if the logged on user has an email address in his ADS account.

I do now that i can query ds_user via the namespace root\Directory\LDAP. Is it possible to pass the username via enviornment variables or something?

Appreciate your help

Regards
Dan

Translating GUID to GPO Name

$
0
0

hey guys,

I used the findorphanedGPOsInSYSVOL.wfs script to find a list of orphaned GPOs and recieved an output of all the GUIDs.

Is there a way I can translate the GUIDS to find out exactly which GPOs are on the list?

Thanks a lot!

Viewing all 19997 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>