Domain tablet GP updates not applying

Posted on 2016-10-18
Last Modified: 2016-10-20
We have a number of surface tab 4's floating around on the domain.

These are joined to the domain but go home with their respective users. The user then connects back into the domain via Sonicwall NetExtender/ SSL VPN thingy to access network/ domain stuff....

I have a GP that restarts all the clients at a specific time during the night. all of the machines within are part of this policy - except servers an other critical machines etc.

Now i have amended the policy to exclude a specific Surface Tab as the user was complaining it was restarting when they were using it (really late at night) so i tried to make the Policy run even later - this didn't change on the effected Tab.

So I removed the specific tab from the policy - but the tab still restarts!!

Any thoughts on this?
Question by:mudcow007
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
  • 2
  • +1
LVL 10

Assisted Solution

by:Muhammad Mulla
Muhammad Mulla earned 125 total points
ID: 41848004
It's possible that the user isn't keeping the tab connected to the VPN long enough to get a gpupdate.

Ask the user to connect to the SSL VPN and then run
gpupdate /force

Open in new window

from the command line.
LVL 25

Assisted Solution

by:Mohammed Khawaja
Mohammed Khawaja earned 125 total points
ID: 41848006
Has the policy been updated on the device, did you run gpupdate /force?

Author Comment

ID: 41848023
The tablet is on site today, connected to corporate wifi.

I did a RSOP.msc which said the policies were updated today?!

after that I issued a gpupdate /force an will wait until wednesday night to see if it reboots

updates to follow
PeopleSoft Has Never Been Easier

PeopleSoft Adoption Made Smooth & Simple!

On-The-Job Training Is made Intuitive & Easy With WalkMe's On-Screen Guidance Tool.  Claim Your Free WalkMe Account Now

LVL 25

Expert Comment

by:Mohammed Khawaja
ID: 41848033
OK, I believe it should work fine now.
LVL 55

Accepted Solution

McKnife earned 250 total points
ID: 41848091
You never told us how you made the device restart. Did you deploy a scheduled task? That task won't be deleted, if you unlink the policy, it stays in place.

Author Comment

ID: 41848273
I made the device restart today, by manually rebooting the device then forcing an update

The GP i have configured to restart domain machines uses scheduled tasks through group policy. which is set onto a specific OU - the tablet is not part of that OU

hope that makes sense?

LVL 55

Expert Comment

ID: 41848283
I already wrote: the scheduled tasks remain in place after you remove the specific tablet from the policy. That is normal, you need to delete that task manually.
LVL 10

Expert Comment

by:Muhammad Mulla
ID: 41848334
As McKnife has mentioned, scheduled tasks will remain in place after you remove the device from the OU. You can either:

Delete the task manually (easiest if it's only one tablet).
Create a GP Preference to delete the specified scheduled task.

Author Closing Comment

ID: 41851637
Awesome, the comments were things i hadn't thought of - so Thanks

Featured Post

Office 365 Training for Admins - 7 Day Trial

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Uncontrolled local administrators groups within any organization pose a huge security risk. Because these groups are locally managed it becomes difficult to audit and maintain them.
Here's a look at newsworthy articles and community happenings during the last month.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.

707 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question