Avatar of SpiderPig
SpiderPigFlag for United States of America

asked on 

Event ID 1058 and 8194, cannot push network drives via GPO

Hello folks,
I have a very weird issues which prevents me on pushing network drives via GPO. It effects primarly Win 7 Pro but some WIn 10 Pro as well.

Background:
We had an old WIndwos 2012 Essentials with no GPOs what so ever. We installed a Windows 2016 Std. and migrated FSMO roles. We had some issues with DCDIAG, but was able to solve them with Auth/Non-Auth repair. See link bellow:
https://support.microsoft.com/en-us/help/2218556/how-to-force-an-authoritative-and-non-authoritative-synchronization-fo

We created new DFS with new drives and migrated data from old server to new server via SyncBackSE. All works great. Started enabling the GPOs, and found some serious consistency issues.

Yesterday we had 5 Win 7 Pro which reused to get the drives. We have to do WBAM depository reset and that solved the issue. Today we have some Win10 issues.

What am I missing here with this migration? I never had so many issues with migrating from server to server. Is that becuase of Win2K12 Essentials?

See screen shots for event viewer issues.

Any ideas?
Image-from-iOS.jpg
Image-from-iOS--1-.jpg
Active DirectoryWindows 10AzureWindows Server 2012Windows Server 2016

Avatar of undefined
Last Comment
Shaun Vermaak
Avatar of Shaun Vermaak
Shaun Vermaak
Flag of Australia image

From one of these computers browse to \\BASILESTUDIO.local\SysVol and see if you can open/if the file GPT.ini exists.

Did you follow best practices and exclude these files from your Anti-Virus?

Did you check that NETLOGON/SYSVOL shares exists/where successfully created?
ASKER CERTIFIED SOLUTION
Avatar of SpiderPig
SpiderPig
Flag of United States of America image

Blurred text
THIS SOLUTION IS ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
Avatar of Shaun Vermaak
Shaun Vermaak
Flag of Australia image

I would not have done that. Instead you open GPMC and individually review the permissions of each GPO otherwise the two permissions (AD GPO and NTFS) is not in sync.

Ensure that Authenticated Users group is added to all GPO with Read rights
Active Directory
Active Directory

Active Directory (AD) is a Microsoft brand for identity-related capabilities. In the on-premises world, Windows Server AD provides a set of identity capabilities and services, and is hugely popular (88% of Fortune 1000 and 95% of enterprises use AD). This topic includes all things Active Directory including DNS, Group Policy, DFS, troubleshooting, ADFS, and all other topics under the Microsoft AD and identity umbrella.

86K
Questions
--
Followers
--
Top Experts
Get a personalized solution from industry experts
Ask the experts
Read over 600 more reviews

TRUSTED BY

IBM logoIntel logoMicrosoft logoUbisoft logoSAP logo
Qualcomm logoCitrix Systems logoWorkday logoErnst & Young logo
High performer badgeUsers love us badge
LinkedIn logoFacebook logoX logoInstagram logoTikTok logoYouTube logo