Solved

Folder Redirection policy application never applied completely

Posted on 2009-07-09
8
17,706 Views
Last Modified: 2012-05-07
I have a Windows 2008 TS server that uses folder redirection group policy to redirect all user's folders to a file server.  All other servers / domain is on Windows Server 2003.

I have been seeing the warning event 510 appearing on the application log on TS server and here is what it says:
"Folder redirection policy application has been delayed until the next logon because the group policy logon optimization is in effect."

From what I understand, folder redirection sometime requires up to three logons to get applied completely.  The problem I have is that I keep seeing that event appearing.  In the mean time I can confirm all user's folders were redirected properly to the server shares, users have been accessing the redirection locations fine without problem.

Turned on the folder redirection debug logging by using the registry suggested by Microsoft does give me a lot more details about the application but nothing indicates problem somewhere, all I can see from the details logs are informative.

Here is the key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Diagnostics\FdeployDebugLevel REG_DWORD value=oxf

What would be the issue here?
0
Comment
Question by:JohnmenZ
  • 6
8 Comments
 
LVL 1

Expert Comment

by:ForsakenSA
ID: 24819072
The message is expected. This behave is by design.  Folder Redirection and Software Installation Policies require the synchronous policy application. The gpupdate /force start a asynchronous policy refresh, the system sets a flag that indicates that the application of Folder Redirection or a software installation policy is required. The flag forces synchronous application of the policy at the users next logon.

http://technet.microsoft.com/en-us/library/cc787939(WS.10).aspx
0
 
LVL 5

Author Comment

by:JohnmenZ
ID: 24819170
What you are saying is technically correct, but that doesn't answer my question why the event 510 keeps appearing while users are working fine with redirected folders.

I wanted to find out if there is problem lying around somewhere, and if so it apparently doesn't impact user's redirected folder from userland somehow, why is that?
0
 
LVL 5

Author Comment

by:JohnmenZ
ID: 24820077
Further investigation reveals that the actual situation is not what I thought.  There are 13 folders needed to be redirected, 12 of them redirected fine except one: Links.

We use a read-only share \\server\Links$, and redirects all user's Links folder to that place.  That way we centrally control what to be displayed on the Links folder, user have no write access to it.  Apparently the Links folder didn't get redirected hence warning 510 returned.

The problem could be cause by these two conflicting conditions:
1. \\server\Links$ is read-only
2. Folder redirection settings for Links folder have "Move all contents in this folder to the new location" enabled.

I think folder redirection client side extension was trying to move whatever is in user's Links folder to the \\server\Links$ then error out since the share is not writable.  However, I do need the setting "Move all contents in this folder to the new location" to be enabled to avoid showing two same name Links folder on User's Windows Explorer.  If that settings is disabled, user will see two folders with the same name of Links in Windows explorer, one points to C: drive, one points to \\server\Links$.  That is a known bug of Vista / Windows 2008 (detailed in http://vistavitals.blogspot.com/2007/11/folder-redirection-duplicate-user-files.html).

I need something to sort out this Links folder redirection.
0
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

 
LVL 5

Author Comment

by:JohnmenZ
ID: 24820097
I discovered that the \\server\Links$ share allows offline files, which will cause problem to folder redirection according to this link (http://vistavitals.blogspot.com/2007/11/folder-redirection-misbehaves-after.html).  I just turned it off and will see how it goes now.
0
 
LVL 5

Accepted Solution

by:
JohnmenZ earned 0 total points
ID: 24820185
I think the problem is resolved, by making sure offline files is not enabled on all roaming / redirected shared folders.  I have started seeing correct behaviours from two of my test accounts now, will try it on real users.
0
 
LVL 5

Author Comment

by:JohnmenZ
ID: 24855775
Just a side note, folder redireciton requires correct permissions to be configured on the target folder, otherwise it can easily fail when you have exclusive right granting or moving contents options enabled.  Consult Microsoft technet documents for correct permission settings.
0
 

Expert Comment

by:Om Joshi
ID: 34205013
Hi, JohnmenZ,

which document are you referring to? please could you get the link on this....

Reason for asking :

i have shared users folder and i think i'm facing the same issue.

many thanks,
om.
0
 
LVL 5

Author Comment

by:JohnmenZ
ID: 34208014
Security Considerations when Configuring Folder Redirection (http://technet.microsoft.com/en-us/library/cc775853(WS.10).aspx)
0

Featured Post

Windows Server 2016: All you need to know

Learn about Hyper-V features that increase functionality and usability of Microsoft Windows Server 2016. Also, throughout this eBook, you’ll find some basic PowerShell examples that will help you leverage the scripts in your environments!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

To effectively work with Diskpart on a Server Core, it is necessary to write some small batch script's, because you can't execute diskpart in a remote powershell session. To get startet, place the Diskpart batch script's into a share on your loca…
The recent Microsoft changes on update philosophy for Windows pre-10 and their impact on existing WSUS implementations.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This tutorial will walk an individual through setting the global and backup job media overwrite and protection periods in Backup Exec 2012. Log onto the Backup Exec Central Administration Server. Examine the services. If all or most of them are stop…

809 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question