Solved

Domain Security Policy Seems to be Hit or Miss

Posted on 2010-09-22
9
200 Views
Last Modified: 2012-08-17
I have two completely separate customers currently using domain security policies in their networks to limit their desktop privileges and redirect their folders. 90% of the time it seems to work fine. However, sometimes, users are logging in and getting a message stating "You've been logged in with a temporary profile" and all of their folder redirection is gone. Folder redirection is IP and I feel comfortable ruling DNS out. There are also no other obscure network issues and it seems as though I can see both the offending PC and the Policy Server when answering the service call. It's consistent at both customers.
0
Comment
Question by:CUHSupport
  • 5
  • 4
9 Comments
 
LVL 9

Expert Comment

by:Ken Fayal
ID: 33740140
The usual reason for this is disk quota for each user.  If they reach their quota, you will get this message.  Usually users with big profiles will see this.  Users with small profiles will not.  Just increase everyone's disk quota.
0
 

Author Comment

by:CUHSupport
ID: 33740329
But there is no local disk quota set on the local machine. I don't have roaming profiles enabled either. Are you referring to a policy that sets the quota?
0
 
LVL 9

Expert Comment

by:Ken Fayal
ID: 33740341
Not on the local machine, the server.  You mentioned that there is a redirection of folders.  Do they redirect their "My Documents" to a folder on the server?  This would explain the reason why redirection is gone.  
0
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

 

Author Comment

by:CUHSupport
ID: 33771408
Yes. I'm redirecting my documents and desktop at both customers. Where do I specify quota?
0
 
LVL 9

Accepted Solution

by:
Ken Fayal earned 500 total points
ID: 33771439
0
 

Author Comment

by:CUHSupport
ID: 33771490
Thanks for the great read. I thought perhaps I was overlooking quota's but I wasn't. All of those quota policies are Not Configured so I think that rules out quotas. Unless there is a default quota set in windows 2003 server?
0
 
LVL 9

Expert Comment

by:Ken Fayal
ID: 33771608
Not just in group policy, but did you also check the quota tab on your Win2K3 hard drives themselves?  This is where I found a default quota set up on my server.  I had no idea it was even there.
0
 
LVL 9

Expert Comment

by:Ken Fayal
ID: 33771630
The only ways I have ever seen this "temporary profile" message appear is if you have - A) run out of hard disk space for the user to store files (profile, desktop, folder redirection) B) the desktop cannot connect to the server and C) the profile is really corrupt.
0
 

Author Comment

by:CUHSupport
ID: 38305252
Would I need to set up quota for the first time on local disk or can I set up a group policy for it?  I need to set up some kind of quota for the users to get them to stop getting this issue
0

Featured Post

Comprehensive Backup Solutions for Microsoft

Acronis protects the complete Microsoft technology stack: Windows Server, Windows PC, laptop and Surface data; Microsoft business applications; Microsoft Hyper-V; Azure VMs; Microsoft Windows Server 2016; Microsoft Exchange 2016 and SQL Server 2016.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Learn about cloud computing and its benefits for small business owners.
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

856 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question