Quantcast
Channel: Group Policy forum
Viewing all 19997 articles
Browse latest View live

Create group policy for different terminals server

$
0
0

Greetings,

I am running Terminal Server 2012 R2 Standard which run GPO policy to all Terminal users and its works fine.

later on I add another Terminal Server 2008 R2(for 3d party applications, which support only 2008 R2), I would like to specify different GPO for the users who connects to this server.

at present time the TS-2008 getting TS-2012 policy from the DC, It is possible to create separate GPO for each server?

thanks in advance...



The.Indexer



"Group Policy Service & Permission Problems" I Will Never Buy Microsoft Windows Computers Again..

$
0
0

 I am trying to get some last bit of use out of my Worthless Microsoft Windows Software.. I have spent more time attempting to make this worthless  junk work, than I ever get using the computer for what it is designed for.. Both My Windows 7 Pro, and my Windows 8.1 are the worst products Microsoft has come out with ever.. I started out using Punch Card Machines, in the 70's that worked better than the junk Microsoft is selling us today.. The last 13 computers I have purchased with Windows software are all in the dumpster. Their tech support is worthless, and half the time you get sent from one phone number to another, and no one knows anything.. I have purchased two sets of software from Microsoft store that have turned out to be Non-Genuine, I paid full price for, have receipts of sales, dates, validation key numbers, and still spend three days in a row trying to explain to the other end that my software they sold me is shit, and no one understands.. And on top of that will not give me a e-mail address to send them a copy of the proof of purchase to them for my file, and to prove to them they are selling shit, and they will not  give me a  address to send them their problems plagued software..  I have three sets of software that i downloaded, and had disk sent as backups that have bad validation keys, and Microsoft will not honer their sales, and will not give me keys that work.. 

If it dose finally work, I can not get the "Diagnostic Policy Service" to start, this online troubleshooting will not  work, never has worked  on windows 8, nor have I ever had any sound on the same computer, nor has my Windows Media Player ever worked either.. Both Win 7 Pro, and Win 8.1 Group Policy will not let me download anything on the C-drive that can possibly repair what is wrong with the Crap at hand, Their my computers, but I have no permission to do a goddamn thing to repair what is wrong with it,,I do not want to read another fucking article on tech shit, I want to know how to delete "Group Policy" from every machine I have, because its only purpose I see it to keep me from using my machine , and forcing me to have to sit on hold and listen to those idiots on the other end just say its another 99 bucks to fix something that I have already given them 99 bucks several times before to fix nothing.. WTF, I was never a fan of Bill Gates, but today he looks like a genius compared to who/what is working there today.. Dose this happen to everyone, or am I just jinxed? Can someone give me a patch or something besides another article to make this shit work..  Thanks, Barnstormer2790

Setting NTFS Folder ACLs via GPO not working on 2012 R2

$
0
0

I have configured some NTFS folder persmissions using a GPO in

Computer configuration/Windows Settings/Security Settings/File System/

Configure this file or folder then: Propagate inheritable permissions to all subfolders and files

This works great on all my Server 2008R2 boxes. But it has no effect on my 2012R2 boxes! 

gpresult /z indicates that the policy is read and applied.   

Why doesn't this work for 2012 R2 servers? 

Many thanks.

Changing domain users desktop wallpaper periodically

$
0
0

Hi 

I know we can set a wallpaper for users from gpedit> Administrative Templates> Desktop. 

but is there any way to do this automatically each day or week ?

Tanx

Turn off add-on performance notifications. Disable add-on performance notifications Not Listed In GPMC.msc

$
0
0

I see it in the Internet Explorer section in local group policy editor (gpedit.msc), but the same setting is not in GPMC.

I have tried it from both Windows 7 and Windows 8.1 RSAT Group Policy Management Console.  Server 2008 domain.

How do we enable this setting for Internet Explorer 10 through domain group policy instead of local group policy editor?


How to remove Internet Explorer Maintenance with Windows 8

$
0
0

In order to edit group policy preferences for Internet Explorer 10 and newer, we are editing group policy exclusively with GPMC installed on a Windows 8 computer. I have the understanding that once you edit group policy with a newer OS, it shouldn't be edited with an OS prior.  Now we are ready to remove policy settings using Internet Explorer Maintenance by clicking "Reset Browser Settings" for that policy node.  However, IEM is not visible with Windows 8.  Is it safe to go against best practice and edit group policy with for example GPMC installed on a Windows 2003 server just to remove IEM policy?  Is there a better way to accomplish this task?

Thank you

Group Policy Management | No such interface supported

$
0
0
Running Windows Server 2008 R2 as a Domain Controller and when I open Group Policy Management, click on a GPO, then click on the Settings tab, it pops up an error message that says "No such interface supported".  I've found several articles that talk about registering .dll files and I've done that and nothing.  I've uninstalled GPMC and reinstalled and that didn't fix anything.  Can anyone help resolve this?

Allow users to manage and change Automatic Update settings

$
0
0

Server SBS 2011 SP 1

Couldn't find a thread that helped. Hoping to get some light on my situation.

The client has users who they'd like to have full control of their client PCs Windows Automatic Updates. The users would like to go into Control Panel and check updates at will, set times for auto updates to their liking. I haven't found the appropriate GPO setting to allow users to change update settings. 

Is that possible? Will creating an OU without a linked GPO and blocking inheritance provide the answer? 

Thanks ALL! 


How to enable folder sharing permission of normal user using GPO

$
0
0

Hi Experts,

How do I enable folder sharing permission for normal user. So that when a normal (Non admin privilege) users creates a folder or is owner of a folder he should be able to share that folder. Please let know is there any GPO setting so that I can push it on number of machines.

How to delegate the users creation permission on OU in active directory using security tab

$
0
0

hi expert,

I trying to give user creation permission to a security group on OU using security tab. I have given the following permission :-

1. Object tab --->  Applies to = this object and all descedent objects ---> permission = User creation object 

but this is not working. User from this security group are not able to create users. getting permisson related error.

Please suggest.

Thanks

   

We need to run an older version of Java & want to use Group Policy setting to disable new policy that blocks it

$
0
0

We have two domain controllers, both Windows Server 2008 R2 SP1.  In order to correctly use our enterprise software, we have to run an older version of Java.  So, after reading http://blogs.msdn.com/b/ie/archive/2014/08/06/internet-explorer-begins-blocking-out-of-date-activex-controls.aspx, I downloaded the appropriate administrative template for IE which was KB2841134 and unzipped it.  (Servers and users/clients all running IE11, clients Win 7.)

I ran the command prompt on dc2 as administrator.  Per the instructions, I tried running the copy command and received Access is Denied even though I'm logged in to the dc as admin with full rights (there are only 3 of us so we are all domain admins with full rights to everything.)  Here is the copy command:

copy /y %WINDIR%\KB2841134\inetres.admx %SYSTEMROOT%\PolicyDefinitions\inetres.admx

cd to the downloaded and extracted folder

copy /y KB2841134\inetres.admx c:\windows\PolicyDefinitions\inetres.admx

TrustedInstallers was the group that owned c:\windows\PolicyDefinitions.  Since I received "Access is Denied", I changed the ownership on that folder to "Domain Admins".  I tried the copy command again and received the same result, that is, "Access is Denied."  I feel I ventured into dangerous territory by changing the ownership of the PolicyDefinitions folder, I don't want to start changing access rights to the files, too.  Can someone help me out?

Thank you.

laptop & desktop OU's

$
0
0
what are default policy are applied to laptop & desktop OU's

sccmghost@hotmail.com

default policy used for windows 7 & Software restriction policy used default.. restricted groups (local administrator)

$
0
0
what are default policy used for windows 7 & what are software restriction policy used default.next  question about restricted groups (local administrator) how to implement in enterprise level since each location having different sites\locations

sccmghost@hotmail.com

Mr Ganda

$
0
0
In a Group Policy, to ensure that an entry is added to the event log whether a local user account is created or deleted on Server1 what should you do?

Remove local / network printers possible with GPP ?

$
0
0

Hello all,

I am looking into using GPP to deploy printers for my clients in the network and I did not find out how to do the following:

Let’s say I have a user that has:

1. local printers;

2. network printers manually installed;

3. network printers installed by login script.

Is it possible to delete all existing printers on a computer/user profile before installing new ones using only the GP Preferences? If I use GPP to deploy printers, the already existing ones remain in the user profile. What I want to do is to remove all and then to install only the ones the user is allowed to use.

In my environment I use kixtart scripts and con2prnt to accomplish this. I would like to know if the GPP allow this.

Thank you for your input.

 

Vlad

 


Messaggio al logon di wondows

$
0
0
Buon giorno, io volevo sapere come fare apparire un messaggio poco dopo il logon di windows.
Il messaggio dovrebbe apparire solo ad un determinato gruppo di utenti. Il server che gestisce gli accessi (active directory) e' windows server 2008 r2.
Ho gia' provato la strada delle politiche di gruppo (sia creandone una nuova che editando quella di default di dominio) ma non mi compare il messaggio neanche dopo aver forzato l'aggiornamento sia sui client che sul server.
Se voi riuscite attraverso l'ultimo metodo indicato bene, se ne conoscete un altro meglio ancora; qualunque sia se funziona vi prego di mostrarmelo. Si parla di circa 1300 utenti con circa 500 macchine. Ringrazio in anticipo. Alessandro

Deploy Software via GPO

$
0
0

HI,

  I need to deploy one Application ( Cisco VPN Client) to group of laptop users.  So if i deploy via  Computer Configuration

and Set the Security Filter to VPN USers will that install? 

As

Exceptions for Use Policy List of Internet Explorer 7 sites

$
0
0

We are currently using the "Use Policy List of Internet Explorer7 sites" to apply Compatibility View to our entire domain.  However, there is one site that cannot run in Compatibility View.

Is there a way to add an exception to the site list?

Account lockout duration

$
0
0

Our Default Domain Policy GPO (linked at the domain level), has the following settings configured:

Account lockout duration: 60 minutes

Account lockout threshold: 3 invalid login attempts

Reset account lockout coutner after: 30 minutes

Using both RSOP in Group Policy Management and GPRESULT on the local machine, I can see that the above policy is applied.

However, when a user account is locked out, it is not automatically unlocked after 60 minutes.

Thoughts?


Print Cluster "deploy with Group Policy" not revealing assigned group policy

$
0
0

recently we are experiencing the following problems on our Print Cluster.

Technical Info

Windows 2008 R2 Enterprise   Node 1 and Node 2

48 GB RAM

Print management Console Version 6.1.7600.16385

When we select any printer in Print cluster management and right click and select "Deploy with Group Policy"  it 

starts off by Initializing.... then stops and does not reveal the assigned computers assigned to GPO. Prior to two days ago it would show the existing GPO asignment

I rebooted Node 2 thinking it would correct itself, but to no avail.    Our group policies are assigned based on global computer groups and are still working.   Test a couple of computers and Group policy are still assigning correct printers based on GPO. But Print cluster

is not revealing GPO>


Viewing all 19997 articles
Browse latest View live


Latest Images

<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>