Solved

Why can't my users open files in My Docs that have been redirected by group policy?

Posted on 2008-10-09
2
181 Views
Last Modified: 2010-03-17
Yesterday I set up a new group policy in Active Directory 03 to redirect My Documents folders to a network drive, and added a few users to a test group, because I'm still learning this as I go, and now I'm glad I did. After these users rebooted, it created the folder with exclusive rights and properly redirected all the data. They were able to work throughout the day without any problems. Today, they can browse through the My Documents folder and any sub folders, but whenever they try to access a file, they get a message stating that they cannot open the file because it is either encrypted or read only.

After the folder was created yesterday, when I was logged in as domain admin, I didn't have access to the folder at all, even to change the permissions. So, as admin, I took ownership and gave domain admins full access so that Veritas Backup Exec would be able to access the folders and do its job. After I changed these permissions, I verified that the user and domain admin were the only ones who could access the folder, and everything seemed good until this morning when they cannot access their own files but I still can as domain admin.

This is my first question here as a growing IT tech, so be gentle, but I'd appreciate the help, and I hope I didn't leave out too much information that would be useful to figuring my situation out.
0
Comment
Question by:Leapen
2 Comments
 
LVL 8

Accepted Solution

by:
Point-In-Cyberspace earned 250 total points
ID: 22681228
You have messed all file and folders permissions.

I think you have to do it all again.

Delete all the folder structure and make windows recreate it with right permissions.

For backups you have to use, with the backup program, a user who is part of "Backup operators" group, which can override permissions and make it's job.

0
 

Author Comment

by:Leapen
ID: 22688076
That's exactly what I ended up doing. I was hoping to be able to sort it out, but starting over from scratch was definitely the route to go. Thanks.
0

Featured Post

Are your AD admin tools letting you down?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

[b]Ok so now I will show you how to add a user name to the description at login. [/b] First connect to your DC (Domain Controller / Active Directory Server) SET PERMISSIONS FOR SCRIPT TO UPDATE COMPUTER DESCRIPTION TO USERNAME 1. Open Active …
This article outlines the process to identify and resolve account lockout in an Active Directory environment.
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.

773 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question