[Webinar] Streamline your web hosting managementRegister Today

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 3979
  • Last Modified:

Group policy not being completely applied to user computer

I'm having an issue with a user computer on my domain.  The user has access to all areas that he's supposed to, The DC sees the laptop, and both laptop and user are properly registered in the domain.  However, the user section of group policy isn't being applied.  issuing a "gpupdate /force" command returns this info:

Updating Policy...

User policy could not be updated successfully. The following errors wer
ered:

The processing of Group Policy failed. Windows could not determine if t
nd computer accounts are in the same forest. Ensure the user domain nam
 the name of a trusted domain that resides in the same forest as the co
count.
Computer Policy update has completed successfully.

To diagnose the failure, review the event log or run GPRESULT /H GPRepo
rom the command line to access information about Group Policy results.

dcdiag shows no pertinant errors or notices.

On a hunch, I disabled IPv6 on the client computer, ran ipconfig /flushdns and ipconfig /registerdns, both of which worked normally.

Thoughts on how I can fix this issue?
Thanks!
0
dcmathis
Asked:
dcmathis
2 Solutions
 
GeodashCommented:
Just for giggle, tun an RSOP against the object to verify that it is getting the policy ow it should be. I would then drop the PC from the domain, reboot, re-add it to the domain and try a /gpupdate again to see if it works correctly.
0
 
dcmathisAuthor Commented:
Will do, as soon as I can get the laptop away from the user.  In the mean time, I just realized that I messed up the error text when I posted it in the original question.  See below for the full error text.

Updating Policy...

User policy could not be updated successfully. The following errors
were encountered:

The processing of Group Policy failed. Windows could not determine
if the user and computer accounts are in the same forest. Ensure the
user domain name matches the name of a trusted domain that
resides in the same forest as the computer account.

Computer Policy update has completed successfully.

To diagnose the failure, review the event log or run GPRESULT /H
GPReport.html from the command line to access information about
Group Policy results.

0

Featured Post

Creating Active Directory Users from a Text File

If your organization has a need to mass-create AD user accounts, watch this video to see how its done without the need for scripting or other unnecessary complexities.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now