?
Solved

Group Policy Error Messages - 1030 & 1058

Posted on 2009-05-05
15
Medium Priority
?
578 Views
Last Modified: 2012-05-06
Hi All,

We are currently experiencing some problems at a clients site and could do with eliminating a GPO error that occurs in event log so that we can progress and find the cause of the problem.

Currently, all users are recieving these error messages when logging on and randomly throughout the day:

Event Type:      Error
Event Source:      Userenv
Event Category:      None
Event ID:      1058
Date:            05/05/2009
Time:            08:44:05
User:            *****\****
Computer:      ***-***
Description:
Windows cannot access the file gpt.ini for GPO cn={92EA504F-144E-4295-9477-B7BA1EBA4073},cn=policies,cn=system,DC=*****,DC=local. The file must be present at the location <\\*****.local\SysVol\*****.local\Policies\{92EA504F-144E-4295-9477-B7BA1EBA4073}\gpt.ini>. (The system cannot find the path specified. ). Group Policy processing aborted.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

Followed by:

Event Type:      Error
Event Source:      Userenv
Event Category:      None
Event ID:      1030
Date:            05/05/2009
Time:            08:44:05
User:            *****\****
Computer:      ***-******
Description:
Windows cannot query for the list of Group Policy objects. A message that describes the reason for this was previously logged by the policy engine.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


We have performed gpupdate /force on all machines, winsock reset, and secedit repairs on the sysvol folders.

The secedit repairs stopped this message coming up on the servers but it still comes up on the clients machines.

The patch where the error says it cannot find the gpt.ini file doesn't even exist in the sysvol.

Has anybody had this problem before?

Thanks
0
Comment
Question by:Beavish1
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 5
  • 3
  • 2
  • +2
15 Comments
 
LVL 21

Expert Comment

by:JBlond
ID: 24302900
0
 
LVL 57

Expert Comment

by:Mike Kline
ID: 24303165
Try  the last step in that article on the client machine
dfsutil /purgemupcache
Thanks
Mike
0
 

Author Comment

by:Beavish1
ID: 24303303
Do I need to navigate to a specific dir to run dfsutil - it doesn't locate it itself.

Thanks
0
What Is Blockchain Technology?

Blockchain is a technology that underpins the success of Bitcoin and other digital currencies, but it has uses far beyond finance. Learn how blockchain works and why it is proving disruptive to other areas of IT.

 
LVL 21

Expert Comment

by:JBlond
ID: 24303321
0
 

Author Comment

by:Beavish1
ID: 24303668
I downloaded XP SP2 Support Tools and:

C:\Program Files\Support Tools>dfsutil /purgemupcache
Unrecognized option "purgemupcache"

Microsoft(R) Windows(TM) Dfs Utility Version 2.1
Copyright (C) Microsoft Corporation 1991-2000. All Rights Reserved.

Dfsutil is an administrative tool to check the functionality of DFS.

Usage: dfsutil [/OPTIONS]

    /? - Usage information
    /ADDSTDROOT:<DfsName> /SERVER:<ServerName> /SHARE:<ShareName>
    /ADDDOMROOT:<DfsName> /SERVER:<ServerName> /SHARE:<ShareName>
    /REMROOT:<DfsName> /SERVER:<ServerName> /SHARE:<ShareName>

    -----------The following are client-side only----------------
    /PKTFLUSH - Flush the local DFS cached information
    /SPCFLUSH - Flush the local DFS cached information
    /PKTINFO [/LEVEL:<Level>] - show DFS internal information.
    /SPCINFO - Show DFS internal information.
Done processing this command.


I guess the commands are pktflush and spcflush in the SP2 version or am I wrong?

Thanks
0
 

Author Comment

by:Beavish1
ID: 24304707
Hi Guys, well I have ran the dfsutil /pktflush and /spcflush but to no avail.

Although it stops the the 1030 and 1058 errors appearing, once the GPO is updated again they appear once again.

Are the machines still inheriting an old GPO? Is there a command to list what GPO's a machine has taken?

Thanks
0
 
LVL 21

Expert Comment

by:JBlond
ID: 24304777
Do you checked all the other steps in the kb article?

Several months ago I solved it with step 7 (domain controllers were in a journal wrap state).
0
 
LVL 21

Expert Comment

by:snusgubben
ID: 24305248
If the path don't excist then you're probably in a journal wrap state. Check errors in the ntfrs event log or run a dcdiag/frsdiag

SG
0
 

Author Comment

by:Beavish1
ID: 24305959
I have checked for errors in the File Replication Service event logs and cannot find any that relate to event ID 13568.

I have performed a 'dcdiag' on all domain controllers (3) and 2 of them come back with the following failed:

Domain Controller 2:

      Starting test: systemlog
         An Error Event occured.  EventID: 0x00000457
            Time Generated: 05/05/2009   15:52:13
            (Event String could not be retrieved)
         An Error Event occured.  EventID: 0x00004E8F
            Time Generated: 05/05/2009   16:27:21
            (Event String could not be retrieved)

Domain Controller 3:

      Starting test: systemlog
         An Error Event occured.  EventID: 0x00000457
            Time Generated: 05/05/2009   15:45:26
            (Event String could not be retrieved)


Does this shed anymore light?


0
 
LVL 21

Expert Comment

by:snusgubben
ID: 24308359
Those are just events from the DC's event log..

Check the SYSVOL on all three DC's if you can locate the "\*****.local\SysVol\*****.local\Policies\{92EA504F-144E-4295-9477-B7BA1EBA4073}\gpt.ini" file (or the "SID" folder).

If you got the GPMC installed then there are some scripts in the "..\Progam files\gpmc\script" folder. Among those there is a script that gives you a report of all GPO's. Then you'll see what GPO missing (SID transfered to GPO real name). I don't remember if you could see the "SID name" directly from the GPMC...

Also check that all your clients use your internal DNS and do not point to any external DNS on their NIC (also secondary DNS should be internal).


SG

0
 
LVL 1

Expert Comment

by:Joemonkey
ID: 24341204
i agree with snusgubben's last comment.  Every time i have seen these errors DNS has been messed up.
0
 

Accepted Solution

by:
Beavish1 earned 0 total points
ID: 24968684
This was resolved by resetting the sysvol folder permissions
0

Featured Post

What Is Blockchain Technology?

Blockchain is a technology that underpins the success of Bitcoin and other digital currencies, but it has uses far beyond finance. Learn how blockchain works and why it is proving disruptive to other areas of IT.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Uncontrolled local administrators groups within any organization pose a huge security risk. Because these groups are locally managed it becomes difficult to audit and maintain them.
After seeing many questions for JRNL_WRAP_ERROR for replication failure, I thought it would be useful to write this article.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…
Suggested Courses

801 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question