Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win

x
?
Solved

Group Policy Error Messages - 1030 & 1058

Posted on 2009-05-05
15
Medium Priority
?
584 Views
Last Modified: 2012-05-06
Hi All,

We are currently experiencing some problems at a clients site and could do with eliminating a GPO error that occurs in event log so that we can progress and find the cause of the problem.

Currently, all users are recieving these error messages when logging on and randomly throughout the day:

Event Type:      Error
Event Source:      Userenv
Event Category:      None
Event ID:      1058
Date:            05/05/2009
Time:            08:44:05
User:            *****\****
Computer:      ***-***
Description:
Windows cannot access the file gpt.ini for GPO cn={92EA504F-144E-4295-9477-B7BA1EBA4073},cn=policies,cn=system,DC=*****,DC=local. The file must be present at the location <\\*****.local\SysVol\*****.local\Policies\{92EA504F-144E-4295-9477-B7BA1EBA4073}\gpt.ini>. (The system cannot find the path specified. ). Group Policy processing aborted.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

Followed by:

Event Type:      Error
Event Source:      Userenv
Event Category:      None
Event ID:      1030
Date:            05/05/2009
Time:            08:44:05
User:            *****\****
Computer:      ***-******
Description:
Windows cannot query for the list of Group Policy objects. A message that describes the reason for this was previously logged by the policy engine.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


We have performed gpupdate /force on all machines, winsock reset, and secedit repairs on the sysvol folders.

The secedit repairs stopped this message coming up on the servers but it still comes up on the clients machines.

The patch where the error says it cannot find the gpt.ini file doesn't even exist in the sysvol.

Has anybody had this problem before?

Thanks
0
Comment
Question by:Beavish1
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 5
  • 3
  • 2
  • +2
15 Comments
 
LVL 21

Expert Comment

by:JBlond
ID: 24302900
0
 
LVL 57

Expert Comment

by:Mike Kline
ID: 24303165
Try  the last step in that article on the client machine
dfsutil /purgemupcache
Thanks
Mike
0
 

Author Comment

by:Beavish1
ID: 24303303
Do I need to navigate to a specific dir to run dfsutil - it doesn't locate it itself.

Thanks
0
Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

 
LVL 21

Expert Comment

by:JBlond
ID: 24303321
0
 

Author Comment

by:Beavish1
ID: 24303668
I downloaded XP SP2 Support Tools and:

C:\Program Files\Support Tools>dfsutil /purgemupcache
Unrecognized option "purgemupcache"

Microsoft(R) Windows(TM) Dfs Utility Version 2.1
Copyright (C) Microsoft Corporation 1991-2000. All Rights Reserved.

Dfsutil is an administrative tool to check the functionality of DFS.

Usage: dfsutil [/OPTIONS]

    /? - Usage information
    /ADDSTDROOT:<DfsName> /SERVER:<ServerName> /SHARE:<ShareName>
    /ADDDOMROOT:<DfsName> /SERVER:<ServerName> /SHARE:<ShareName>
    /REMROOT:<DfsName> /SERVER:<ServerName> /SHARE:<ShareName>

    -----------The following are client-side only----------------
    /PKTFLUSH - Flush the local DFS cached information
    /SPCFLUSH - Flush the local DFS cached information
    /PKTINFO [/LEVEL:<Level>] - show DFS internal information.
    /SPCINFO - Show DFS internal information.
Done processing this command.


I guess the commands are pktflush and spcflush in the SP2 version or am I wrong?

Thanks
0
 

Author Comment

by:Beavish1
ID: 24304707
Hi Guys, well I have ran the dfsutil /pktflush and /spcflush but to no avail.

Although it stops the the 1030 and 1058 errors appearing, once the GPO is updated again they appear once again.

Are the machines still inheriting an old GPO? Is there a command to list what GPO's a machine has taken?

Thanks
0
 
LVL 21

Expert Comment

by:JBlond
ID: 24304777
Do you checked all the other steps in the kb article?

Several months ago I solved it with step 7 (domain controllers were in a journal wrap state).
0
 
LVL 21

Expert Comment

by:snusgubben
ID: 24305248
If the path don't excist then you're probably in a journal wrap state. Check errors in the ntfrs event log or run a dcdiag/frsdiag

SG
0
 

Author Comment

by:Beavish1
ID: 24305959
I have checked for errors in the File Replication Service event logs and cannot find any that relate to event ID 13568.

I have performed a 'dcdiag' on all domain controllers (3) and 2 of them come back with the following failed:

Domain Controller 2:

      Starting test: systemlog
         An Error Event occured.  EventID: 0x00000457
            Time Generated: 05/05/2009   15:52:13
            (Event String could not be retrieved)
         An Error Event occured.  EventID: 0x00004E8F
            Time Generated: 05/05/2009   16:27:21
            (Event String could not be retrieved)

Domain Controller 3:

      Starting test: systemlog
         An Error Event occured.  EventID: 0x00000457
            Time Generated: 05/05/2009   15:45:26
            (Event String could not be retrieved)


Does this shed anymore light?


0
 
LVL 21

Expert Comment

by:snusgubben
ID: 24308359
Those are just events from the DC's event log..

Check the SYSVOL on all three DC's if you can locate the "\*****.local\SysVol\*****.local\Policies\{92EA504F-144E-4295-9477-B7BA1EBA4073}\gpt.ini" file (or the "SID" folder).

If you got the GPMC installed then there are some scripts in the "..\Progam files\gpmc\script" folder. Among those there is a script that gives you a report of all GPO's. Then you'll see what GPO missing (SID transfered to GPO real name). I don't remember if you could see the "SID name" directly from the GPMC...

Also check that all your clients use your internal DNS and do not point to any external DNS on their NIC (also secondary DNS should be internal).


SG

0
 
LVL 1

Expert Comment

by:Joemonkey
ID: 24341204
i agree with snusgubben's last comment.  Every time i have seen these errors DNS has been messed up.
0
 

Accepted Solution

by:
Beavish1 earned 0 total points
ID: 24968684
This was resolved by resetting the sysvol folder permissions
0

Featured Post

Has Powershell sent you back into the Stone Age?

If managing Active Directory using Windows Powershell® is making you feel like you stepped back in time, you are not alone.  For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Uncontrolled local administrators groups within any organization pose a huge security risk. Because these groups are locally managed it becomes difficult to audit and maintain them.
This process allows computer passwords to be managed and secured without using LAPS. This is an improvement on an existing process, enhanced to store password encrypted, instead of clear-text files within SQL
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.

604 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question