Solved

Group Policy Error Messages - 1030 & 1058

Posted on 2009-05-05
15
562 Views
Last Modified: 2012-05-06
Hi All,

We are currently experiencing some problems at a clients site and could do with eliminating a GPO error that occurs in event log so that we can progress and find the cause of the problem.

Currently, all users are recieving these error messages when logging on and randomly throughout the day:

Event Type:      Error
Event Source:      Userenv
Event Category:      None
Event ID:      1058
Date:            05/05/2009
Time:            08:44:05
User:            *****\****
Computer:      ***-***
Description:
Windows cannot access the file gpt.ini for GPO cn={92EA504F-144E-4295-9477-B7BA1EBA4073},cn=policies,cn=system,DC=*****,DC=local. The file must be present at the location <\\*****.local\SysVol\*****.local\Policies\{92EA504F-144E-4295-9477-B7BA1EBA4073}\gpt.ini>. (The system cannot find the path specified. ). Group Policy processing aborted.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

Followed by:

Event Type:      Error
Event Source:      Userenv
Event Category:      None
Event ID:      1030
Date:            05/05/2009
Time:            08:44:05
User:            *****\****
Computer:      ***-******
Description:
Windows cannot query for the list of Group Policy objects. A message that describes the reason for this was previously logged by the policy engine.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


We have performed gpupdate /force on all machines, winsock reset, and secedit repairs on the sysvol folders.

The secedit repairs stopped this message coming up on the servers but it still comes up on the clients machines.

The patch where the error says it cannot find the gpt.ini file doesn't even exist in the sysvol.

Has anybody had this problem before?

Thanks
0
Comment
Question by:Beavish1
  • 5
  • 3
  • 2
  • +2
15 Comments
 
LVL 21

Expert Comment

by:JBlond
ID: 24302900
0
 
LVL 57

Expert Comment

by:Mike Kline
ID: 24303165
Try  the last step in that article on the client machine
dfsutil /purgemupcache
Thanks
Mike
0
 

Author Comment

by:Beavish1
ID: 24303303
Do I need to navigate to a specific dir to run dfsutil - it doesn't locate it itself.

Thanks
0
Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

 
LVL 21

Expert Comment

by:JBlond
ID: 24303321
0
 

Author Comment

by:Beavish1
ID: 24303668
I downloaded XP SP2 Support Tools and:

C:\Program Files\Support Tools>dfsutil /purgemupcache
Unrecognized option "purgemupcache"

Microsoft(R) Windows(TM) Dfs Utility Version 2.1
Copyright (C) Microsoft Corporation 1991-2000. All Rights Reserved.

Dfsutil is an administrative tool to check the functionality of DFS.

Usage: dfsutil [/OPTIONS]

    /? - Usage information
    /ADDSTDROOT:<DfsName> /SERVER:<ServerName> /SHARE:<ShareName>
    /ADDDOMROOT:<DfsName> /SERVER:<ServerName> /SHARE:<ShareName>
    /REMROOT:<DfsName> /SERVER:<ServerName> /SHARE:<ShareName>

    -----------The following are client-side only----------------
    /PKTFLUSH - Flush the local DFS cached information
    /SPCFLUSH - Flush the local DFS cached information
    /PKTINFO [/LEVEL:<Level>] - show DFS internal information.
    /SPCINFO - Show DFS internal information.
Done processing this command.


I guess the commands are pktflush and spcflush in the SP2 version or am I wrong?

Thanks
0
 

Author Comment

by:Beavish1
ID: 24304707
Hi Guys, well I have ran the dfsutil /pktflush and /spcflush but to no avail.

Although it stops the the 1030 and 1058 errors appearing, once the GPO is updated again they appear once again.

Are the machines still inheriting an old GPO? Is there a command to list what GPO's a machine has taken?

Thanks
0
 
LVL 21

Expert Comment

by:JBlond
ID: 24304777
Do you checked all the other steps in the kb article?

Several months ago I solved it with step 7 (domain controllers were in a journal wrap state).
0
 
LVL 21

Expert Comment

by:snusgubben
ID: 24305248
If the path don't excist then you're probably in a journal wrap state. Check errors in the ntfrs event log or run a dcdiag/frsdiag

SG
0
 

Author Comment

by:Beavish1
ID: 24305959
I have checked for errors in the File Replication Service event logs and cannot find any that relate to event ID 13568.

I have performed a 'dcdiag' on all domain controllers (3) and 2 of them come back with the following failed:

Domain Controller 2:

      Starting test: systemlog
         An Error Event occured.  EventID: 0x00000457
            Time Generated: 05/05/2009   15:52:13
            (Event String could not be retrieved)
         An Error Event occured.  EventID: 0x00004E8F
            Time Generated: 05/05/2009   16:27:21
            (Event String could not be retrieved)

Domain Controller 3:

      Starting test: systemlog
         An Error Event occured.  EventID: 0x00000457
            Time Generated: 05/05/2009   15:45:26
            (Event String could not be retrieved)


Does this shed anymore light?


0
 
LVL 21

Expert Comment

by:snusgubben
ID: 24308359
Those are just events from the DC's event log..

Check the SYSVOL on all three DC's if you can locate the "\*****.local\SysVol\*****.local\Policies\{92EA504F-144E-4295-9477-B7BA1EBA4073}\gpt.ini" file (or the "SID" folder).

If you got the GPMC installed then there are some scripts in the "..\Progam files\gpmc\script" folder. Among those there is a script that gives you a report of all GPO's. Then you'll see what GPO missing (SID transfered to GPO real name). I don't remember if you could see the "SID name" directly from the GPMC...

Also check that all your clients use your internal DNS and do not point to any external DNS on their NIC (also secondary DNS should be internal).


SG

0
 
LVL 1

Expert Comment

by:Joemonkey
ID: 24341204
i agree with snusgubben's last comment.  Every time i have seen these errors DNS has been messed up.
0
 

Accepted Solution

by:
Beavish1 earned 0 total points
ID: 24968684
This was resolved by resetting the sysvol folder permissions
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Today, still in the boom of Apple, PC's and products, nearly 50% of the computer users use Windows as graphical operating systems. If you are among those users who love windows, but are grappling to keep the system's hard drive optimized, then you s…
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

822 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question