Link to home
Start Free TrialLog in
Avatar of mikesjn
mikesjn

asked on

Domain controllers policy cannot be opened with full admin

When I go to open the default domain controllers policy I get "failed to open the group policy object, you may not have appropriate rights detail: the system cannot find the path specified. All other GPO are fine and permissions okay- I can create a new policy in that container and all okay. GPOTOOL gives this result

Policy {6AC1786C-016F-11D2-945F-00C04FB984F9}
Policy OK
Details:
------------------------------------------------------------
DC: ws-ukdatastore.internal.biowisdom.com
Friendly name: Default Domain Controllers Policy
Created: 07/02/2001 22:17:03
Changed: 28/10/2004 14:13:46
DS version:     0(user) 23(machine)
Sysvol version: 0(user) 23(machine)
Flags: 0
User extensions: not found
Machine extensions: [{827D319E-6EAC-11D2-A4EA-00C04F79F83A}{803E14A0-B4FB-11D0-A0D0-00A0C90F574B}]
Functionality version: 2
------------------------------------------------------------

If I run with /check acl it comes back okay for all policies.

Any ideas
Avatar of nihlcat
nihlcat

Let's troubleshoot.  From a command prompt type:
find /i "cannot find" %SYSTEMROOT%\security\logs\winlogon.log

It's sometimes caused by a renamed or deleted account.  Let me know what you find out.
ASKER CERTIFIED SOLUTION
Avatar of nihlcat
nihlcat

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial