Solved

Universal Groups - mapping drives

Posted on 2008-10-27
6
348 Views
Last Modified: 2008-11-03
I have a Active Directory forest that I am attempting to map a drive for a couple of Universal groups that are nested within a DL Group.

I have 2 universal groups that are nested within a DL group. The DL group is listed in the login script but does not run. (I know becasue I have a Wscript Echo that should appear when the drive is mapped).

If I add the user directly to the DL group, the drive mapping works but if I remove it, nothing. The user is a member of both universal groups.

What am I missing?
0
Comment
Question by:broberc6
  • 3
  • 3
6 Comments
 
LVL 30

Expert Comment

by:LauraEHunterMVP
Comment Utility
What logic are you using to detect group membership within your login script? Not all memberof tests are able to chase nested group memberships.

See the following code listings for examples of group membership tests in login scripts that will test for nested memberships:

http://www.rlmueller.net/freecode1.htm
0
 

Author Comment

by:broberc6
Comment Utility
Below is the script I using for all other working mappings

if InStr(vUserGroups, Lcase("MapXdrive")) Then
WshNetwork.MapNetworkDrive "X:","\\server1\Data\Executive",False
WScript.Echo("Script Ran! ")
End If
0
 
LVL 30

Expert Comment

by:LauraEHunterMVP
Comment Utility
Depends on how you are defining vUserGroups. Chances are good that the logic you are using does not test for nested group memberships. See my previous for examples on how to do that.
0
How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

 

Author Comment

by:broberc6
Comment Utility
This is how it is declared in the login script
0
 

Author Comment

by:broberc6
Comment Utility
vUserGroups=LCase(Join(oLogonUser.MemberOf))
0
 
LVL 30

Accepted Solution

by:
LauraEHunterMVP earned 125 total points
Comment Utility
Simply searching the contents of the memberOf attribute will not recurse through nested group memberships. Again, see my previous for examples of how to do so.
0

Featured Post

Free Gift Card with Acronis Backup Purchase!

Backup any data in any location: local and remote systems, physical and virtual servers, private and public clouds, Macs and PCs, tablets and mobile devices, & more! For limited time only, buy any Acronis backup products and get a FREE Amazon/Best Buy gift card worth up to $200!

Join & Write a Comment

[b]Ok so now I will show you how to add a user name to the description at login. [/b] First connect to your DC (Domain Controller / Active Directory Server) SET PERMISSIONS FOR SCRIPT TO UPDATE COMPUTER DESCRIPTION TO USERNAME 1. Open Active …
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

15 Experts available now in Live!

Get 1:1 Help Now