Solved

Active Directory Users personal folders auto rename

Posted on 2011-03-16
6
781 Views
Last Modified: 2012-05-11
When a new user is created in Active directory, a private users folder is auto created and mapped to the user as "U:\"  where "U" = the user name.
recently, a group of about 10 % of the user base is renaming the folders from the users name to "My Documents".

The users mapped drives still work, the only confusion is when administrators try to find the folder for an individual using windows explorer or other search methods.
0
Comment
Question by:wlasner
  • 3
  • 3
6 Comments
 
LVL 4

Expert Comment

by:bigstyler
ID: 35148388
Hello,

give only the "List Folder Permission" for your user in the root of his directory. And Then give the "Modify" right on the subfolder.

The user will not be able anymore to change the root folder name.
0
 

Author Comment

by:wlasner
ID: 35148451
The user is not changing the name, it is changing on its own.....
0
 
LVL 4

Expert Comment

by:bigstyler
ID: 35148577
Oh ok !
This is a problem with desktop.ini file that is interpreted by Windows 7 from your admin computers.

Do you have a desktop.ini file in the root folder ? (choose to display hidden and system files).

If yes, please modify the security of the file to grant only the right to deny the right for your admins.
Then they will be able to display the folder correctly.

You can run this with a script like :

%windir%\system32\icacls.exe %homedrive%\Desktop.ini /deny "Domain Admins":r
%windir%\system32\icacls.exe %homedrive%\Desktop.ini /deny Administrators:r
%windir%\system32\icacls.exe %homedrive%\Desktop.ini /deny "Other Admin Groups":r


0
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

 

Author Comment

by:wlasner
ID: 35149105
There is a destop.ini file.  can you please explain more detail on what needs to be done and where the script should be run.
thanks
0
 
LVL 4

Accepted Solution

by:
bigstyler earned 500 total points
ID: 35149264
Just to be sure and do it easily just directlry modify the ACL of the desktop.ini for a user.

Deny read access to it for everyone and then try to reproduce the issue :)
0
 

Author Comment

by:wlasner
ID: 35296529
OK - deny admin and domain admin worked - thank you.
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Resolve DNS query failed errors for Exchange
This article shows how to deploy dynamic backgrounds to computers depending on the aspect ratio of display
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

856 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question