Solved

Is it Normal?

Posted on 2008-10-27
12
243 Views
Last Modified: 2013-11-25
I don't know if it is wrong. But the users don't load the politic's of the domain.. Look at the picture
1.JPG
0
Comment
Question by:felny
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 6
  • 5
12 Comments
 
LVL 7

Accepted Solution

by:
maze-uk earned 500 total points
ID: 22812637
Option 1: corruption of the GPO
Option 2: wrong credentials: check the security on the GPO
0
 
LVL 2

Author Comment

by:felny
ID: 22812748
How can i chek the security on GPO? what is GPO?
0
 
LVL 7

Expert Comment

by:maze-uk
ID: 22813120
GPO = Group Policy Object ( Objeto directiva de grupo).

What I see on your screenshot is a possible corruption of the ADM file in the SYSVOL component of the GPO. It doesn't affect the GPO settings.

1) Install GPMC on your machine (Group Policy Management Console): http://www.microsoft.com/downloads/details.aspx?FamilyId=0A6D4C24-8CBD-4B35-9272-DD3CBFC81887&displaylang=en

2) In GPMC, check your GPO: in the right pane, choose 'details'. Check that the version matches between AD and the Sysvol, and note the Unique ID

3) Browse your Sysvol (\\yourDomain\Sysvol\yourDomain\Policies\yourGPOUniqueID\Adm) and check the ADM file(s)

Using GPMC, you can add/remove ADM files, it doesn't affect the policy settings (once configured, the settings remain).
ADM files are the GPO 'templates' providing a user friendly view of the settings (as well as possible default values)
http://www.petri.co.il/understanding_administrative_templates_in_gpo.htm
0
Office 365 Training for Admins - 7 Day Trial

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

 
LVL 7

Expert Comment

by:maze-uk
ID: 22813166
An ADM file is a text file containing: the GPO settings and possible values, the registry key they will influence, and the text strings with explanations.
They can be loaded / unloaded from each gpo.

I think the ADM file in your GPO has corrupted text strings, and maybe corrupted content.
Unless you have loaded personalized ADM files (as they can be personalized), you can simply reload the default ones.
0
 
LVL 7

Expert Comment

by:maze-uk
ID: 22813206
here are 2 screenshots: 1 for GPMC, and one for loading / unloading ADM files
gpo1.jpg
gpo2.jpg
0
 
LVL 2

Author Comment

by:felny
ID: 22813368
Do you have an ADM template for me?
0
 
LVL 7

Expert Comment

by:maze-uk
ID: 22813467
you will find the default ones on your machine (%windir%\Inf)

or Microsoft: http://www.microsoft.com/downloads/details.aspx?FamilyID=92759d4b-7112-4b6c-ad4a-bbf3802a5c9b&displaylang=en

You will also find 'personalized' ADM files on the web...
0
 
LVL 2

Author Comment

by:felny
ID: 22832692
Hi my friend. i don't know what is wrong, but i still having problem.  When i apply the policy to the domain, it doesn't work. When the users log in in a computer that belong to the domain, doesn't load the wallpaper, the screen saver, anything that i enabled in the policy. also, i did what you tell me, -->> 3)

Browse my Sysvol (\\yourDomain\Sysvol\yourDomain\Policies\yourGPOUniqueID\Adm) and check the ADM file(s)  

and watch what i  sow...

1.JPG
0
 
LVL 7

Expert Comment

by:maze-uk
ID: 22858849
Hello,
From your screenshot, I see you have 3 policies, 2 being the default ones.
Browse down to : \\bixicableweb\sysvol\boxicableweb\policies\{A772abfc-......-B851}\adm
You should find the current adm files of your policy.

Have you tried to load/unload default adm files?
0
 
LVL 2

Author Comment

by:felny
ID: 22867254
Let me close this question, and open a new. Maybe i didn`t make the right wuestion.
0
 
LVL 2

Author Closing Comment

by:felny
ID: 31510305
-
0

Featured Post

Office 365 Training for Admins - 7 Day Trial

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Auditing domain password hashes is a commonly overlooked but critical requirement to ensuring secure passwords practices are followed. Methods exist to extract hashes directly for a live domain however this article describes a process to extract u…
A hard and fast method for reducing Active Directory Administrators members.
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.

728 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question