Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win

x
?
Solved

Problem applying a custom Group Policy

Posted on 2010-09-07
5
Medium Priority
?
430 Views
Last Modified: 2012-06-21
I am having issues with a particular group policy on Server 2008 R2. I
 am logging on to a 2008 Terminal server. The terminal server is in it's own OU, with a loopback GPO and 2 custom GPOs in it. At the user OU level I have a custom user config GPO.
If I have my loopback GPO enabled, my custom user config GPO doesn't apply. With the loopback GPO present, if I go to do a gpresult, the custom GPO is not mentioned at all. It's not in the applied GPO section or the filtered ones.
With the loopback GPO disabled, I just get the custom user GPO (at the user level), and not the other 2 GPOs I have at the Terminal Server Ou level.

0
Comment
Question by:lineonecorp
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
5 Comments
 

Author Comment

by:lineonecorp
ID: 33624105
It turned out to be the loopback setting.
It was set to replace. I changed to merge, and it works now.
0
 
LVL 3

Expert Comment

by:Emileneth
ID: 33624128
Taken directly from:
http://support.microsoft.com/?scid=kb%3Ben-us%3B231287&x=14&y=5

The lookback will replace entirely your user GP if it's on Replace mode, that's why it wouldnt be visible at a gpresult query, I think you want to use the Merge mode
0
 

Author Comment

by:lineonecorp
ID: 33624929
Is this a new twist to 2008 as we have a template for TS setups that we have followed in 2000 and 2003 and we used the Replace option for Loopback Processing with them? That is what I usually find as recommended for TS setups in pretty well everything I read.  For instance in this link I just came across they use the 'Replace' function.  http://www.experts-exchange.com/OS/Microsoft_Operating_Systems/Server/Windows_Server_2008/Q_24579654.html

Is it a matter that it can work with the Replace but we have to change something else?
0
 
LVL 3

Accepted Solution

by:
Emileneth earned 2000 total points
ID: 33633376
I've read the other Ex.Ex. question.

The behaviour hasn't changed, according to MS KB papers.
I have my concerns towards updating versions of windows server, things may not go right all the time.

Elitematrix user said he just delted and recreated the policies and every thing worked as usual.

What I dont get it, why it was working that way on previous versions, as for this new version seems to be logical, maybe there was a sutile change, like some default value change. Something that may be missed during the upgrade.
0
 

Author Comment

by:lineonecorp
ID: 33643635
Thanks for the help. We'll work with the merge function if that's what it takes.
0

Featured Post

Free Tool: Path Explorer

An intuitive utility to help find the CSS path to UI elements on a webpage. These paths are used frequently in a variety of front-end development and QA automation tasks.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Uncontrolled local administrators groups within any organization pose a huge security risk. Because these groups are locally managed it becomes difficult to audit and maintain them.
Group policies can be applied selectively to specific devices with the help of groups. Utilising this, it is possible to phase-in group policies, over a period of time, by randomly adding non-members user or computers at a set interval, to a group f…
To efficiently enable the rotation of USB drives for backups, storage pools need to be created. This way no matter which USB drive is installed, the backups will successfully write without any administrative intervention. Multiple USB devices need t…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

618 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question