Solved

Cant remove registry changes made with ADM

Posted on 2009-07-01
4
337 Views
Last Modified: 2012-05-07
I was directed to create a new registry key via group policy.  I made the adm file and added that to a new GPO.  Then I was told the path to it was wrong and it should be placed in another existing path.

The problem arises when I change the ADM file and try to replace the changes I made previously.  I go into the GPO remove the template, then add the revised template.

Running gpupdate on the test machine reveals my new setting takes effect, but the old path that is bad is there too.  I delete the key and do a gpupdate and it comes back.  I checked the SYSVOL folder for that GPO and find the ADM template in it; its only the corrected version.  The only way I found to correct the problem is to delete the whole GPO and recreate it.

Where does it get the information to keep making the bad registy key?  How do I get it to purge that setting?
0
Comment
Question by:cavalierlan
  • 2
  • 2
4 Comments
 
LVL 83

Accepted Solution

by:
oBdA earned 500 total points
ID: 24755197
Add the "bad" key back to your adm template in a separate policy (you can leave the "good" key in), import the template again, set the policy with the "bad" key back to "Not configured".
For the future: *before* you change an adm template, set ALL policies you're about to change back to "Not configured".
Do NOT remove an adm template for good if there are still policies configured in it! The template just tells the GP editor what to display; removing a template from a GPO does NOT remove any settings configured in the GPO with the help of this template!
0
 

Author Comment

by:cavalierlan
ID: 24755440
will I have to leave it in the GPO not configured, or can I remove it once it is not configured?
 
0
 

Author Comment

by:cavalierlan
ID: 24755547
Also, do you guys get paid for your points? How does that work?
0
 
LVL 83

Expert Comment

by:oBdA
ID: 24755557
Once the setting is back at "Not configured", you can remove the "bad" key again.
0

Featured Post

Are your AD admin tools letting you down?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Introduction You may have a need to setup a group of users to allow local administrative access on workstations.  In a domain environment this can easily be achieved with Restricted Groups and Group Policies. This article will demonstrate how to…
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

777 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question