Solved

Windows 10 roaming profile with 2008R2

Posted on 2016-08-31
11
38 Views
Last Modified: 2016-10-22
I'm having an issue with roaming profiles not pulling down on new Windows 10 desktops.

Created the username.V5 folder
Copied data from V2 to V5
Gave full control and ownership to the user
Made the user a local admin on the W10 workstation

Still getting errors that the profile is not synched. Nothing pulling down at all from the 2008 server.

Has anyone successfully used roaming profiles between 2008R2 and Windows 10?
0
Comment
Question by:RISLA
  • 5
  • 5
11 Comments
 
LVL 57

Assisted Solution

by:Cliff Galiher
Cliff Galiher earned 500 total points
ID: 41778732
You cannot copy v2 to v5. That's why they are stamped with different version numbers. They are incompatible.
0
 

Author Comment

by:RISLA
ID: 41778808
I only copied the desktop icons, documents, ect. Not the whole folder. I should've specified.
0
 

Author Comment

by:RISLA
ID: 41778831
I just deleted the local and roaming profile.

Logged the user in, it created the .V5 on the server...but gave me the temporary profile error message.
0
Does Powershell have you tied up in knots?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

 
LVL 57

Expert Comment

by:Cliff Galiher
ID: 41778838
Log out, reboot, and kog back in. Usually you will get that message if the profile hasn't been created yet or if it had to update the registry.
0
 

Author Comment

by:RISLA
ID: 41779822
I deleted the V5 and local, deleted the users SID out of registry and rebooted.

I created a test file on her desktop, rebooted, browsed out to the V5 share and it was there.

This is where it went south...

I had to change ownership on the V5 so I could access it (With a domain admin account). Gave the user and admin full control, then gave her ownership again.

Now I'm getting the temporary profile error again. I can't win with this thing.
0
 
LVL 57

Expert Comment

by:Cliff Galiher
ID: 41779881
Changing permissions will break profiles absolutely. That is by design. Delete and restart and let the system work as it is supposed to.
0
 

Author Comment

by:RISLA
ID: 41781599
I need domain admins to have full access to the profiles for backup, restore, or even just placing new icons on their desktops. How can I accomplish this? Off the bat the V5's read 0 bytes and empty because I (ADmin) don't have permission to the folder.
0
 
LVL 57

Assisted Solution

by:Cliff Galiher
Cliff Galiher earned 500 total points
ID: 41781705
Any backup solution worth using runs as a system process so it will have access, even if an admin doesn't.

If an admin "wants" full access (because they are control freaks... it is rarely a genuine need)... after telling them that they are full of it and are actually weakening most compliance standards and may fail an audit because of their control issues, I'd recommend splitting data away from the roaming profile. Home drives/paths have been around since NT3.5 to accomplish this, and folder redirection almost as long. You can grant admin access to these locations while leaving the roaming profile folders and their permissions intact.
0
 

Author Comment

by:RISLA
ID: 41781745
When I upgrade someone from W7 to 10, how am I moving their desktop icons? The only thing I can think of is logging in as the user on their new PC, browsing to their old V2, and copying to the desktop. Having access was always a convenient way to just copy and paste.

I do go into roaming profiles regularly to see who's using the server space with anything that's not work related. Is there a way to give the user and domain admins full control over the profiles as we've always done up until this upgrade to W10?
0
 
LVL 57

Accepted Solution

by:
Cliff Galiher earned 500 total points
ID: 41781769
As I said, folder redirection can do this and is profile agnostic. More importantly, even if you don't grant yourself access, the redirected folder will work regardless of profile version, so copying and pasting is not required, nor is breaking security and compliance by granting too much access. They'll access the same folder regardless of profile, even local non-roaming profiles.
0

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
Windows 10 came with  a lot of built in applications, Some organisations leave them there, some will control them using GPO's. This Article is useful for those who do not want to have any applications in their image (example:me).
Windows 8 came with a dramatically different user interface known as Metro. Notably missing from that interface was a Start button and Start Menu. Microsoft responded to negative user feedback of the Metro interface, bringing back the Start button a…
The Task Scheduler is a powerful tool that is built into Windows. It allows you to schedule tasks (actions) on a recurring basis, such as hourly, daily, weekly, monthly, at log on, at startup, on idle, etc. This video Micro Tutorial is a brief intro…

809 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question