Solved

terminal server users getting issued a temporary profile

Posted on 2013-06-25
2
8,448 Views
Last Modified: 2013-07-03
Windows Server 2008 r2 running terminal services.
2 users get temporary profiles issued to them.

one of the users was an old user who got terminated and now is back.
maybe his guid is flakey
help
driving me batty
0
Comment
Question by:jamesmetcalf74
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 5

Accepted Solution

by:
JasonDuncanworks earned 500 total points
ID: 39276635
It is usually caused by a mismatch GUID. Check these steps out.
You can backup the info and delete the profile, then log back in and it will recreate it.
http://community.spiceworks.com/how_to/show/1595-how-to-delete-a-user-profile-from-server-2008-terminal-server

1.      
Identify the SID of the user whose profile needs to be deleted.
-      I typically use ADSI Edit on a domain controller to do this. Open ADSI Edit, navigate through the OU’s until you find the user, CN=”Username”, right-click and choose properties. Scroll to the object property labeled “objectSid”. Document that SID because you will need it shortly.

2.      
Verify that the user is not logged into the server.
-      From a command prompt type “query user” and verify that the user is not listed.

3.      
Open the folder directory where the server user profiles are stored.
- Server 2008 default is “C:\%USERNAME”.

4.      
Delete the profile folder for the user.
5.      
Open the registry editor.
-      Start > regedit

6.      
Navigate to the following: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList
7.      
Locate the sub-key that is named the same as the documented SID from earlier. Right-click on the sub-key choose delete.
8.      
Have the user log back in. If the user reports no problems then you have successfully deleted a user profile.
-      If the user logs in and is presented with a pop-up from the system try stating that the user is being logged in with a temporary profile then proceed to step 9.

9.      
If the user gets logged in with a temporary profile then have them log out, open up the registry editor once again, and navigate to HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList.
10.      
Look for a sub-key named the same as the documented SID followed by a “.bak”. Right-click on that sub-key and choose delete.
11.      
Have the user attempt to login. The user should no longer be prompted by the temporary profile pop-up.
0
 

Author Closing Comment

by:jamesmetcalf74
ID: 39297957
perfecto
0

Featured Post

Why You Need a DevOps Toolchain

IT needs to deliver services with more agility and velocity. IT must roll out application features and innovations faster to keep up with customer demands, which is where a DevOps toolchain steps in. View the infographic to see why you need a DevOps toolchain.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
ADMFILES.INI 7 59
LDAP Setup 6 65
Compatibility view list registry key 1 47
msiexec won't run 4 31
Background Information Recently I have fixed file server permission issues for one of my client. The client has 1800 users and one Windows Server 2008 R2 domain joined file server with 12 TB of data, 250+ shared folders and the folder structure i…
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
To efficiently enable the rotation of USB drives for backups, storage pools need to be created. This way no matter which USB drive is installed, the backups will successfully write without any administrative intervention. Multiple USB devices need t…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

752 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question