?
Solved

Help doagnosing why Group Policy not applying on one machine

Posted on 2014-01-08
9
Medium Priority
?
2,621 Views
Last Modified: 2014-01-13
I have one desktop which seems to not be getting the group policies. All my machines are Windows 7 Enterprise. When I manually do a gpupdate /force it shows successful but I don't see any of the changes being implemented. How would I diagnose where the problem is.

I checked the event log on that machine. There is an event source SceCli which says "security policy in the Group policy objects has been applied successfully"

There is another entry source gupdate which says "The description for Event ID 0 from source gupdate cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

Service stopped"

Not sure if that is related to the problem.
0
Comment
Question by:swenger7
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 5
  • 3
9 Comments
 
LVL 23

Expert Comment

by:Patrick Bogers
ID: 39765974
Hi

Is this a policy for users or computers?

If for computers, is this particulair pc in the AD-group of pc;s where the GPO should apply?

If for users, same issue. Is this particulair user member of the group the GPO should apply?
0
 
LVL 23

Expert Comment

by:yo_bee
ID: 39765976
I would run RSOP /h Filepath.html and look at that.
See what policies are applying.

You can run the Group Policy Result Wizard also from within GPMC and target that computer.

You should see if the policies are being seen at all.
0
 

Author Comment

by:swenger7
ID: 39765984
yes. It is part of both the computer and user AD groups. Other computer and users in the same AD group are working.
0
Office 365 Training for Admins - 7 Day Trial

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

 

Author Comment

by:swenger7
ID: 39765999
I tried the command RSOP /h Filepath.html and received the following result:

The RSoP snap-in was unable to generate the computer's data due to insufficient permissions. The snap-in will continue to start but only the user's data will be displayed.

Access denied.
0
 
LVL 23

Expert Comment

by:yo_bee
ID: 39766000
Run CMD as a domain Admin
then enter the command RSOP or just use the Group Policy Result within GPMC
0
 
LVL 23

Expert Comment

by:yo_bee
ID: 39766003
Note that the Filepath should be c:\file.html
0
 

Author Comment

by:swenger7
ID: 39766014
what's interesting is that the RSOp did come up with the user configurations and some of the policies were applied but a couple weren't. I would like to figure out why they were not.

When I use the Group Policy Results Wizard in the GPM and choose this computer and username the summary shows under user Configuration that these GPO are applied.

But I can see from looking at her machine that they were NOT applied.
0
 

Accepted Solution

by:
swenger7 earned 0 total points
ID: 39766244
Sorry. Seems I had an issue with this user being moved from a group which I didn't realized. Sorry for the trouble.

Thanks,
0
 

Author Closing Comment

by:swenger7
ID: 39776091
The problem was actually as a result of a change that was done on my network which I had not realized
0

Featured Post

Has Powershell sent you back into the Stone Age?

If managing Active Directory using Windows Powershell® is making you feel like you stepped back in time, you are not alone.  For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Here's a look at newsworthy articles and community happenings during the last month.
This process allows computer passwords to be managed and secured without using LAPS. This is an improvement on an existing process, enhanced to store password encrypted, instead of clear-text files within SQL
This tutorial will walk an individual through the steps necessary to install and configure the Windows Server Backup Utility. Directly connect an external storage device such as a USB drive, or CD\DVD burner: If the device is a USB drive, ensure i…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …
Suggested Courses

719 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question