if I want to setup group policy to open files with python.exe, and lets say I have different versions of python on different systems. so how can I set a general path for python.exe for associated program? lets say one would be c:/python27 and one c:/python3 or we might have some other different versions. can we set multiple programs in case one version is not available on server then it can use the other one?
group policy for opening python file
GPO Error. Event id 4017.
hi,
We have interesting problem. Some of our clients can not access sysvol share after restart their computers and our gpo did not apply on their computer.
The interesting part is , for example domain name is abc.local , they can not access \\abc.local\sysvol unc path. It asks username and password. They can access successful \\abc.local\netlogon .
they can access UNC path with dc name. for example \\dc1.abc.local\sysvol
And after a few minutes they access sysvol folder. After they restart their computer , they have the same problem.
having trouble with GPO
prevent windows machine / server to reboot after updating patches
Delete a GPO
Hi,
I've created a GPO in the Top Level of the Domain ( Right click on the domain name and create GPO) and create a scheduled task that shutdown machines on the domain at the specific time. Now I delete that GPO and only some of the servers and clients shut down, not all of them. How can I delete this GPO entirely from the domain? Please help me to clean up the mess. Thanks
Group Policy isnt being applied | Default Association Configuration File
Hi all,
We have decided to make Chrome our default browser. I've made the change on the .xml file which was created by the previous regime, however it doesn't want to kick in. I've waiting several hours and done a gpupdate/force. I've also created a new .xml file with all the associations, but even that doesn't kick in. I've checked the RSOP console document and it states the file that i've put in, but for some reason the 'Default Apps' are not changing.
I've also come to notice that the previous regime included a default association file on our image. Now, does this file take priority over GPO, or can i still over ride this with Group policy? I feel like i'm missing something small element, but i dont know what it is, this is my first time doing this, so it could just be that i'm missing a small element somewhere.
Any help/advise would be appreciated
Thanks in advance.
How do I configure a user account to have ‘logon as a service’ permissions?
How do I configure a user account to have ‘logon as a service’ permissions?
This is for CRM application use and need to enable permission via GPO
Microsoft TechNet Forum Bandara
Group policy not applying in the correct link order?
Hi Guys
Assistence appreciated please....
I have 3 GPO's assigned to an OU
1= C Drive access for IT Admins (via scope ad group)
2= global main user side policy (including blocking access to c drives) (set via wmi filter=win 10 and type of device Desktop), part of the policy sets c drive blocked.
3= C Drive Access for Laptop users (set via a wmi filter =windows 10 and type of device laptop)
My understanding was the last link order policy set should set... for example a deny c drive on 2 and then a enable c drive on 3 then the 3 should set and apply.
This is not the case though, I can only get the C Drive access for IT admins if I set the link order to the as below?
1= C Drive access for IT Admins
2= global main user side policy
3= C Drive Access for Laptop users
I wanted to set the order as:
1= global main user side policy
2= C Drive Access for Laptop users
3= C Drive access for IT Admins
Just to note these are all user side policies with the compter part disabed.
Thank for any help.
not able find option Turn on convenience PIN sign-IN in Logon option group policy in windows server 2012 R2 DC
not able find option Turn on convenience PIN sign-IN in Logon option group policy in windows server 2012 R2 DC.
Can you please help ?
Powershell Cmdlets Missing For AGPM
According to the below MSFT article there are AGPM PowerShell cmdlets available:
https://docs.microsoft.com/en-us/powershell/module/agpm/?view=win-mdop2-ps
However, after I've gotten AGPM fully set up, I can't seem to find these cmdlets anywhere. Neither on the Client or Server side installations. I've searched through Desktop Optimization Pack ISO I have and been all over the Web searching for a download link. I've come up with nothing.
Has anyone run into this before?
I'm running AGPM on Windows Server 2016 with the below Features for PowerShell installed on it:
- Windows PowerShell 5.1
- Windows PowerShell 2.0 Engine
- Windows PowerShell ISE
local administrator password not gray out group policy in windows server 2016
Gurmeet Singh
How GPO Pull and Push works?
Hi,
I have 3rd party network solution that requires to install MSI package (1st Step), and a connection profile (2nd Step) which is a file must be imported into the installed MSI package using CMD command.
I have managed to install MSI through GPO and it is installed on all computers.
then I created another GPO to apply the CMD command to install the connection profile, and it is also succeeded.
The question I have is, the 3rd party network solution server can now communicate with the MSI Agents, and if you wish to change the parameters of the connection profile, you can do that and update them.
But in the next restart, will the GPO re-apply the CMD command which lead importing the original profile?
thanks,
Windows 10 (1803) admx issue
Hi,
I'm running Windows 2012R2 DC and I've isntalled the "Windows 10 1709 admx" files and then copied the files under "C:\windows\sysvol\mydomain\Policies\PolicyDefinitons" and everything was working fine.
I've now upgraded the admx file by installing and then replacing the files with the new "Windows 10 1803" admx files.
Everything is OK my new settings for Windows 10 are available but one setting doesn't exist anymore in the 1803 version.
It's the "HidePeopleBar" located in the "StartMenu.admx" file. DO you know why this settings is no more available with the 1803 admx file ?
Thank you
Scripts via GPO and mandatory profiles.
Hello!
We are using mandatory profiles in AD, from network share, for some users. And there is problem: logon scripts, assigned via GPO logon script, does not launch, if that users have not administrative privileges on their workstations.
If I assign to user "local admin rights" then scripts launched well. But there is security hole.
Please, help me to understend this behavior. Is there any way to fix this problem?
Group Policy problem (Not Applied (Unknown Reason)
Few day ago we had problem with DFSR and errors (5014,4612,5002) due unclean shutdown. This has been solved now, SYSVOL is now synced. But now i have problems with User Preferences which are not applied.
We have lot of GPOs mostly computer policies and they we working ok. User policies are working also ok but preferences are not:
The following GPOs were not applied because they were filtered out ------------------------------------------------------------------- Local Group Policy Filtering: Not Applied (Empty) Shortcutxxx Filtering: Not Applied (Unknown Reason) The user is a part of the following security groups
- User preferences are linked to the user OU and contain only User preferences (Shortcuts).
- Security Filtering is setup by Groups
After spending two day investigating i have noticed:
- When Security Filtering is setup by User or Group it does NOT work
- When Security Filtering is setup by authenticated user (bulid in) it does WORK.
Something is wrong with sec. filtering. No matter what policy is checked for user or group it DOES not work (Filtering: Not Applied (Unknown Reason))
Groups or Users have right to read and apply GPO!
Please Help.
This all was working until yesterday, after DFSRs errors we fixed this does not work anymore.And if i set GPI to Group or User, on computer when i do :
gpupdate /force
and then
gupudate /r
i do not see this (Not Applied (Unknown Reason), i do not filtering at all (for this GPO). I must set Auth. users so policy apply and then set for user or group then i can see this. It is strange.
In basic, whatever policy if filtered by user or group, is NOT applied. or ((Not Applied (Unknown Reason)
Edit: To be clear. :
- create GPO, set sec. filtering to user or group and remove authe. user. Login to computer with that user and use :
gpresult /r
No policy.
- reate GPO, set sec. filtering to authe. user Login to computer with that user and use same as above, and works. After that on DC change filtering to user or group and remove auth, go to pc and run:
gpupdate /force gpresult /r
and got code:
Group Policy problem (Not Applied (Unknown Reason)
Un anble to ebanble run as Administrator
Group Policy - windows server 2008 r2
Hi There,
would like to prohibit the use of windows 10 hotspot on LAN through windows server 2008 r2 group policy.
please help
PC Log Off - GPO
Dear All,
In a Windows 2012 Environment, I want to apply GPO to LogOff Windows 7/10 Workstations if remain Idle of Certain Time.
Appreciate your Help
Thanks and Regards,
KALEEMULLAH BILAL
DHCP Server 2012 - The DHCP service failed to see a directory server for authorization.
Hi,
I have an issue with Windows Server 2012 DHCP Services, after checking the Events its showing Event ID 1059"The DHCP service failed to see a directory server for authorization."
I have searched a lot on google but still not able to find a Proper Solution.
Any Proper Help will be highly appreciated
Thank You!
Kaleemullah Bilal
BGinfo.exe: Error loading 'C:\bginfo\bg.bgi'
Hi all
I have a DC with some GPOs, which one of them is running BGinfo to show the machine specs. on the desktop.
This GPO was working fine in windows Server 2012 R2 after importing to windows server 2016. Now it displays the error:
===============================
= BGinfo =
= (X) Error loading 'C:\bginfo\bg.bgi' =
[ ok ] =
================================
This error appears each time the machine(clients & servers) are restarted, but not if log off & log in again.
It looks like after restart the GPO runs before the desktop is ready after immediately log in to machine after restart.
Any idea & help will be appreciated.
Thanks in advance