quickslvr
asked on
GPO not working
i have created various GPO`s,but i have to admit not a single one is working.
a drive mapping GPO is set,not working.
two software GPO are set, not working either!
i tried with gpupdate /force, no way! this is going to freak me out.
any advice pls?
a drive mapping GPO is set,not working.
two software GPO are set, not working either!
i tried with gpupdate /force, no way! this is going to freak me out.
any advice pls?
Or, run
on a computer in question. Check the results file to see if your computers even see the GPOs to be applied.
gpresult /h c:\results.html
on a computer in question. Check the results file to see if your computers even see the GPOs to be applied.
Are you blocking inheritance at any of your OUs?
ASKER
the GPO are applying to a OU named clients.
So what settings are exactly being set on the GPOs
so for example if they are computer settings are the objects in that OU computers or users?
Just making sure the right settings are being applied
Thanks
Mike
so for example if they are computer settings are the objects in that OU computers or users?
Just making sure the right settings are being applied
Thanks
Mike
ASKER
Your policy is not even being applied at the OU. Do you have it link enabled?
Or where do you have it link too
ASKER
it is linked to the OU clients
ASKER
ok,i found the following:
The following GPOs were not applied because they were filtered out:
Drive Mapping GPO
Filtering: Not Applied (Empty)
I assume that this is a user GPO and i have to bind this GPO to a user group to make it work. prior,i linked it to the clients OU
is that correct?
The following GPOs were not applied because they were filtered out:
Drive Mapping GPO
Filtering: Not Applied (Empty)
I assume that this is a user GPO and i have to bind this GPO to a user group to make it work. prior,i linked it to the clients OU
is that correct?
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
domain users then.right?
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
pls check here: is this correct?
targetgr.png
targetgr.png
ASKER
if i do a RSOP, theres error. message is:
"the application was applied due to...it was in language neutral"
but nothing has been installed
"the application was applied due to...it was in language neutral"
but nothing has been installed
Looks correct to me.
You are configuring item-level targeting.
Left click on your GPO from GPMC. Click the scope tab, at the bottom for security filtering, what do you see?
Left click on your GPO from GPMC. Click the scope tab, at the bottom for security filtering, what do you see?
ASKER
here we go:
scope.png
scope.png
That looks like it's set up correctly to me. Though, since the link is in a computer group, it's not going to apply user settings. I think that's why you're getting the problem with it showing empty. You need to link it to a specific user group.
What is in Clients?
ASKER
in the OU clients are all the computers of the domain.
so i link the GPO to the domain users (security) group?
so i link the GPO to the domain users (security) group?
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
No, not a security group, an OU housing the users you would like to apply this GPO to.
ASKER
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
Where are you linking this GPO is the question?
ASKER
once again: the domain users group
You can NOT link to the domain users. You are giving permission to apply the policy to anyone that is the Domain User group but this does NOT link the policy to the Domain Container, Default Domain Controller Container, etc
ASKER
yess,but it doesnt give me even the choice. it has to be either as user or computer group
Where? You are adding the Security Filtering which is GPO permissions. You aren't adding the GPO to a OU.
ASKER
ASKER
ok,that one is working meantime.
i had to set some registry key which delays the net logon,that worked
i had to set some registry key which delays the net logon,that worked
Is things working now?
ASKER
drive map GPO,yes
software GPO,no
software GPO,no
Software GPO are you applying to a Computer Configuration or User Configuration? What OU are you linking too?
ASKER
Computer Configuration AND linking to the OU clients.
OU clients hold computers?
ASKER
YES
How did you get the drive mapping GPO to work?
ASKER
user configuration,then item level targeting to domain computers. created an OU with the computers inside and then i linked it to that OU
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
ok,from what i`ve found it looks like the MSI packages are not properly created.
those freeware tools do,for some reason,not properly convert. thats probably the "price" one pays by using freeware.
i tried with http://www.advancedinstaller.com/ and it works now
those freeware tools do,for some reason,not properly convert. thats probably the "price" one pays by using freeware.
i tried with http://www.advancedinstaller.com/ and it works now
Run ROSP to view the GPO being applied